HL7 Vietnam VN Core FHIR Implementation Guide

Hướng dẫn triển khai FHIR cốt lõi Việt Nam — VN Core FHIR Implementation Guide
0.10.0 - Draft for Community Review Viet Nam cờ

Hướng dẫn triển khai FHIR cốt lõi Việt Nam — VN Core FHIR Implementation Guide - Draft for Community Review (v0.10.0) built by the FHIR (HL7® FHIR® Standard) Build Tools. See the Directory of published versions

Hồ sơ tài nguyên: Đồng ý xử lý dữ liệu VN Core — VN Core Consent Profile - Mô tả chi tiết

Draft tại thời điểm 2026-07-20

Các định nghĩa cho vn-core-consent hồ sơ tài nguyên

Guidance on how to interpret the contents of this table can be foundhere

0. Consent
Definition

A record of a healthcare consumer’s choices, which permits or denies identified recipient(s) or recipient role(s) to perform one or more actions within a given policy context, for specific purposes and periods of time.

ShortA healthcare consumer's choices to permit or deny recipients or roles to perform actions for specific purposes and periods of time
Comments

Broadly, there are 3 key areas of consent for patients: Consent around sharing information (aka Privacy Consent Directive - Authorization to Collect, Use, or Disclose information), consent for specific treatment, or kinds of treatment, and general advance care directives.

Control0..*
Is Modifierfalse
Summaryfalse
Invariantsdom-2: If the resource is contained in another resource, it SHALL NOT contain nested Resources (contained.contained.empty())
dom-3: If the resource is contained in another resource, it SHALL be referred to from elsewhere in the resource or SHALL refer to the containing resource (contained.where((('#'+id in (%resource.descendants().reference | %resource.descendants().as(canonical) | %resource.descendants().as(uri) | %resource.descendants().as(url))) or descendants().where(reference = '#').exists() or descendants().where(as(canonical) = '#').exists() or descendants().where(as(canonical) = '#').exists()).not()).trace('unmatched', id).empty())
dom-4: If a resource is contained in another resource, it SHALL NOT have a meta.versionId or a meta.lastUpdated (contained.meta.versionId.empty() and contained.meta.lastUpdated.empty())
dom-5: If a resource is contained in another resource, it SHALL NOT have a security label (contained.meta.security.empty())
dom-6: A resource should have narrative for robust management (text.`div`.exists())
ppc-1: Either a Policy or PolicyRule (policy.exists() or policyRule.exists())
ppc-2: IF Scope=privacy, there must be a patient (patient.exists() or scope.coding.where(system='something' and code='patient-privacy').exists().not())
ppc-3: IF Scope=research, there must be a patient (patient.exists() or scope.coding.where(system='something' and code='research').exists().not())
ppc-4: IF Scope=adr, there must be a patient (patient.exists() or scope.coding.where(system='something' and code='adr').exists().not())
ppc-5: IF Scope=treatment, there must be a patient (patient.exists() or scope.coding.where(system='something' and code='treatment').exists().not())
vn-consent-rejected-not-permit: Bản ghi status=rejected (từ chối ngay từ đầu) không được chứa rule permit ở BẤT KỲ độ sâu nested nào — cho phép đang hiệu lực phải dùng status=active ((status = 'rejected') implies provision.repeat(provision).type.where($this = 'permit').empty())
vn-consent-provision-structure: Theo R4: root rule (Consent.provision) KHÔNG mang type; mọi rule permit/deny khai ở nested (provision.provision[*]) và bắt buộc có type (provision.exists() implies (provision.type.empty() and provision.provision.exists() and provision.repeat(provision).all(type.exists())))
vn-consent-no-processing-legal-basis: VNCoreConsent 0.9 chỉ biểu diễn lựa chọn của chủ thể và không được mang vn-ext-processing-legal-basis; xử lý không qua đồng ý dùng VNCoreAuditEventLegalBasisDecision / VNCoreConsent 0.9 represents data-subject choices only and SHALL NOT carry vn-ext-processing-legal-basis; processing without consent uses VNCoreAuditEventLegalBasisDecision (extension.where(url = 'http://fhir.hl7.org.vn/core/StructureDefinition/vn-ext-processing-legal-basis').empty())
vn-consent-permit-requires-disclosure: Bản ghi có rule permit phải mang nội dung đã thông báo (vn-ext-consent-disclosure) và phương thức thể hiện đồng ý (vn-ext-consent-method) — Luật 91/2025/QH15 Điều 9 khoản 2 và khoản 3; NĐ 356/2025/NĐ-CP Điều 6 khoản 1. A consent granting any permit rule SHALL carry the disclosure evidence and the declared consent method. (provision.repeat(provision).type.where($this = 'permit').exists() implies (extension.where(url = 'http://fhir.hl7.org.vn/core/StructureDefinition/vn-ext-consent-disclosure').exists() and extension.where(url = 'http://fhir.hl7.org.vn/core/StructureDefinition/vn-ext-consent-method').exists()))
vn-consent-permit-evidence-retained: Bản ghi có rule permit phải trỏ tới bằng chứng đồng ý đã lưu: source[x] trong FHIR hoặc evidenceLocator ngoài FHIR — NĐ 356/2025/NĐ-CP Điều 6 khoản 2 (bên kiểm soát lưu trữ sự đồng ý và chịu trách nhiệm chứng minh khi tranh chấp). Retained consent evidence SHALL be locatable. (provision.repeat(provision).type.where($this = 'permit').exists() implies (source.exists() or extension.where(url = 'http://fhir.hl7.org.vn/core/StructureDefinition/vn-ext-consent-disclosure').extension.where(url = 'evidenceLocator').exists()))
vn-consent-choice-actor-identifiable: Bản ghi có rule permit/deny phải xác định được NGƯỜI thực hiện lựa chọn: performer, hoặc bằng chứng trỏ được tới người đó (source[x] trong FHIR / evidenceLocator ngoài FHIR) — Luật 91/2025/QH15 Điều 9 khoản 3 (sự đồng ý phải kiểm chứng được), Điều 4 khoản 1 điểm b (quyền không đồng ý), Điều 24 (đại diện). A subject-choice record SHALL identify who made the choice via performer or locatable evidence. (provision.repeat(provision).type.exists() implies (performer.where(reference.exists() or identifier.exists()).exists() or source.exists() or extension.where(url = 'http://fhir.hl7.org.vn/core/StructureDefinition/vn-ext-consent-disclosure').extension.where(url = 'evidenceLocator').exists()))
vn-consent-permit-purpose-required: Mỗi rule permit phải nêu mục đích xử lý — Luật 91/2025/QH15 Điều 9 khoản 2 điểm a (mục đích xử lý là nội dung phải thông báo) và khoản 4 điểm a (đồng ý theo TỪNG mục đích). Every permit rule SHALL state its processing purpose. (provision.repeat(provision).where(type = 'permit').all(purpose.exists()))
vn-consent-disclosed-controller-role: Vai trò được thông báo cho chủ thể chỉ có thể là bên kiểm soát hoặc bên kiểm soát và xử lý — Luật 91/2025/QH15 Điều 9 khoản 2 điểm b. Bên xử lý và bên thứ ba không phải chủ thể của nghĩa vụ thông báo này. The disclosed party role SHALL be controller or controller-processor. (extension.where(url = 'http://fhir.hl7.org.vn/core/StructureDefinition/vn-ext-consent-disclosure').extension.where(url = 'controllerRole').value.ofType(Coding).code.all($this in ('controller' | 'controller-processor')))
vn-consent-rights-notice-versioned: Bản thông báo quyền và nghĩa vụ phải xác định được ĐÚNG bản đã trình: dùng DocumentReference, hoặc URL có ghim phiên bản. The rights notice SHALL be identifiable as the exact version presented. (extension.where(url = 'http://fhir.hl7.org.vn/core/StructureDefinition/vn-ext-consent-disclosure').extension.where(url = 'rightsNotice').all(value.ofType(Reference).exists() or value.ofType(url).matches('/v[0-9]')))
vn-consent-sensitive-notice-required: Nếu nội dung đã thông báo có loại dữ liệu thuộc danh mục nhạy cảm (NĐ 356/2025/NĐ-CP Điều 4 khoản 1) thì phải khai đã thông báo cho chủ thể rằng dữ liệu cần xử lý là dữ liệu cá nhân nhạy cảm — NĐ 356/2025/NĐ-CP Điều 6 khoản 4. Disclosing a sensitive-category data type SHALL come with the explicit sensitive-data notice. (extension.where(url = 'http://fhir.hl7.org.vn/core/StructureDefinition/vn-ext-consent-disclosure').extension.where(url = 'dataCategory').value.ofType(CodeableConcept).coding.where(system = 'http://fhir.hl7.org.vn/core/CodeSystem/vn-sensitive-personal-data-cs').exists() implies extension.where(url = 'http://fhir.hl7.org.vn/core/StructureDefinition/vn-ext-consent-disclosure').extension.where(url = 'sensitiveDataNotice').value.ofType(boolean) = true)
vn-consent-disclosure-before-consent: Thời điểm trình nội dung thông báo không được sau thời điểm đồng ý — sự đồng ý chỉ có hiệu lực khi chủ thể ĐÃ biết rõ các thông tin đó (Luật 91/2025/QH15 Điều 9 khoản 2). Disclosure SHALL NOT be timestamped after the consent itself. (extension.where(url = 'http://fhir.hl7.org.vn/core/StructureDefinition/vn-ext-consent-disclosure').extension.where(url = 'disclosedAt').value.ofType(dateTime).all($this <= %resource.dateTime))
ppc-1: Either a Policy or PolicyRule (policy.exists() or policyRule.exists())
ppc-2: IF Scope=privacy, there must be a patient (patient.exists() or scope.coding.where(system='something' and code='patient-privacy').exists().not())
ppc-3: IF Scope=research, there must be a patient (patient.exists() or scope.coding.where(system='something' and code='research').exists().not())
ppc-4: IF Scope=adr, there must be a patient (patient.exists() or scope.coding.where(system='something' and code='adr').exists().not())
ppc-5: IF Scope=treatment, there must be a patient (patient.exists() or scope.coding.where(system='something' and code='treatment').exists().not())
2. Consent.implicitRules
Definition

A reference to a set of rules that were followed when the resource was constructed, and which must be understood when processing the content. Often, this is a reference to an implementation guide that defines the special rules along with other profiles etc.

ShortA set of rules under which this content was created
Comments

Asserting this rule set restricts the content to be only understood by a limited set of trading partners. This inherently limits the usefulness of the data in the long term. However, the existing health eco-system is highly fractured, and not yet ready to define, collect, and exchange data in a generally computable sense. Wherever possible, implementers and/or specification writers should avoid using this element. Often, when used, the URL is a reference to an implementation guide that defines these special rules as part of it's narrative along with other profiles, value sets, etc.

Control0..1
Typeuri
Is Modifiertrue because This element is labeled as a modifier because the implicit rules may provide additional knowledge about the resource that modifies it's meaning or interpretation
Primitive ValueThis primitive element may be present, or absent, or replaced by an extension
Summarytrue
Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
4. Consent.extension
Definition

An Extension


May be used to represent additional information that is not part of the basic definition of the resource. To make the use of extensions safe and manageable, there is a strict set of governance applied to the definition and use of extensions. Though any implementer can define an extension, there is a set of requirements that SHALL be met as part of the definition of the extension.

ShortExtensionAdditional content defined by implementations
Comments

There can be no stigma associated with the use of extensions by any application, project, or standard - regardless of the institution or jurisdiction that uses or defines the extensions. The use of extensions is what allows the FHIR specification to retain a core level of simplicity for everyone.

Control0..*
TypeExtension
Is Modifierfalse
Summaryfalse
Alternate Namesextensions, user content
Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
SlicingThis element introduces a set of slices on Consent.extension. The slices areUnordered and Open, and can be differentiated using the following discriminators:
  • value @ url
  • 6. Consent.extension:processingLegalBasis
    Slice NameprocessingLegalBasis
    Definition

    Consent chỉ biểu diễn lựa chọn của chủ thể (đồng ý, từ chối, rút lại hoặc giới hạn). Xử lý không cần đồng ý theo Luật 91/2025/QH15 Điều 19 khoản 1 dùng VNCoreAuditEventLegalBasisDecision. Context Consent của extension chỉ được giữ trong dòng 0.9 để consumer đọc dữ liệu legacy 0.8 và dự kiến gỡ ở 1.0. / Consent represents only the data subject's choice. Processing without consent under Article 19(1) uses VNCoreAuditEventLegalBasisDecision. The Consent context remains for legacy 0.8 reads during 0.9 and is planned for removal in 1.0.

    ShortCấm authoring căn cứ Điều 19 trên Consent / No Article 19 authoring on Consent
    Control0..0
    This element is affected by the following invariants: ele-1
    TypeExtension(Căn cứ xử lý không cần đồng ý — Processing Legal Basis Extension) (Extension Type: CodeableConcept)
    Is Modifierfalse
    Summaryfalse
    Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
    ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
    ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
    8. Consent.extension:consentMethod
    Slice NameconsentMethod
    Definition

    Phương thức (cách thức) chủ thể dữ liệu cá nhân thể hiện sự đồng ý xử lý DLCN. Căn cứ: NĐ 356/2025/NĐ-CP Điều 6 khoản 1 — nhóm các phương thức thể hiện sự đồng ý tại các điểm a/b/c/d/đ. Mỗi phương thức phải bảo đảm khả năng kiểm chứng (verifiable) về xác định chủ thể, thời điểm, và nội dung đồng ý. Đặt extension này trên Consent hoặc Consent.provision để ghi phương thức mà hệ thống tuyên bố đã sử dụng. Extension hỗ trợ truy vết nhưng không tự chứng minh sự đồng ý hợp lệ, khả năng kiểm chứng hay tuân thủ NĐ 356/2025/NĐ-CP. Required binding giữ một taxonomy ổn định cho IG; other-verifiable chỉ dùng khi phương thức khác vẫn đáp ứng yêu cầu kiểm chứng và phải được mô tả trong hợp đồng/chứng cứ triển khai.

    ShortPhương thức chủ thể dữ liệu thể hiện sự đồng ý
    Control0..1
    This element is affected by the following invariants: ele-1
    TypeExtension(Phương thức thể hiện đồng ý — VN Consent Method) (Extension Type: CodeableConcept)
    Is Modifierfalse
    Must Supporttrue
    Obligations
      ObligationsActor
      SHALL:populate-if-knownNguồn tạo hồ sơ lâm sàng (Document Source)
      SHALL:no-error & SHALL:persistKho hồ sơ EMR (Repository)
      SHALL:no-error & SHALL:handleỨng dụng người dân (Citizen App)
      Summaryfalse
      Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
      ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
      ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
      10. Consent.extension:consentDisclosure
      Slice NameconsentDisclosure
      Definition

      Bắt buộc khi bản ghi có rule permit (invariant vn-consent-permit-requires-disclosure): loại dữ liệu, bên kiểm soát và vai trò, bản thông báo quyền và nghĩa vụ, và thông báo dữ liệu nhạy cảm. Xem vn-ext-consent-disclosure.

      ShortNội dung đã thông báo cho chủ thể khi xin đồng ý
      Control0..1
      This element is affected by the following invariants: ele-1
      TypeExtension(Nội dung đã thông báo khi xin đồng ý — Consent Disclosure Evidence Extension) (Complex Extension)
      Is Modifierfalse
      Must Supporttrue
      Obligations
        ObligationsActor
        SHALL:populate-if-knownNguồn tạo hồ sơ lâm sàng (Document Source)
        SHALL:no-error & SHALL:persistKho hồ sơ EMR (Repository)
        SHALL:no-error & SHALL:handleỨng dụng người dân (Citizen App)
        Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
        ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
        12. Consent.modifierExtension
        Definition

        May be used to represent additional information that is not part of the basic definition of the resource and that modifies the understanding of the element that contains it and/or the understanding of the containing element's descendants. Usually modifier elements provide negation or qualification. To make the use of extensions safe and manageable, there is a strict set of governance applied to the definition and use of extensions. Though any implementer is allowed to define an extension, there is a set of requirements that SHALL be met as part of the definition of the extension. Applications processing a resource are required to check for modifier extensions.

        Modifier extensions SHALL NOT change the meaning of any elements on Resource or DomainResource (including cannot change the meaning of modifierExtension itself).

        ShortExtensions that cannot be ignored
        Comments

        There can be no stigma associated with the use of extensions by any application, project, or standard - regardless of the institution or jurisdiction that uses or defines the extensions. The use of extensions is what allows the FHIR specification to retain a core level of simplicity for everyone.

        Control0..*
        TypeExtension
        Is Modifiertrue because Modifier extensions are expected to modify the meaning or interpretation of the resource that contains them
        Summaryfalse
        Requirements

        Modifier extensions allow for extensions that cannot be safely ignored to be clearly distinguished from the vast majority of extensions which can be safely ignored. This promotes interoperability by eliminating the need for implementers to prohibit the presence of extensions. For further information, see the definition of modifier extensions.

        Alternate Namesextensions, user content
        Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
        ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
        14. Consent.status
        Definition

        Ánh xạ kỹ thuật của profile từ các quyền tại Luật 91/2025/QH15: active (bản ghi đang hiệu lực — kể cả từ chối chủ động qua rule nested provision.provision.type=deny), rejected (đề nghị đồng ý bị từ chối ngay từ đầu), inactive (đã chấm dứt: rút lại theo Điều 10, hết thời hạn, hoặc bị thay thế). Các mã FHIR này không phải trạng thái do Luật quy định.


        Indicates the current state of this consent.

        ShortTrạng thái đồng ýdraft | proposed | active | rejected | inactive | entered-in-error
        Comments

        KHÔNG dùng rejected cho việc rút lại — rút lại sự đồng ý đang hiệu lực (Điều 10) chuyển bản ghi sang inactive; bản chép mới ghi nhận từ chối tiếp theo (nếu có) dùng active + rule nested deny.


        This element is labeled as a modifier because the status contains the codes rejected and entered-in-error that mark the Consent as not currently valid.

        Control1..1
        BindingThe codes SHALL be taken from ConsentStatehttp://hl7.org/fhir/ValueSet/consent-state-codes|4.0.1
        (required to http://hl7.org/fhir/ValueSet/consent-state-codes|4.0.1)

        Indicates the state of the consent.

        Typecode
        Is Modifiertrue because This element is labelled as a modifier because it is a status element that contains status entered-in-error which means that the resource should not be treated as valid
        Primitive ValueThis primitive element may be present, or absent, or replaced by an extension
        Must Supporttrue
        Obligations
          ObligationsActor
          SHALL:populate-if-knownNguồn tạo hồ sơ lâm sàng (Document Source)
          SHALL:no-error & SHALL:persistKho hồ sơ EMR (Repository)
          SHALL:no-error & SHALL:handleỨng dụng người dân (Citizen App)
          Summarytrue
          Requirements

          The Consent Directive that is pointed to might be in various lifecycle states, e.g., a revoked Consent Directive.

          Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
          16. Consent.scope
          Definition

          Phạm vi đồng ý — mặc định patient-privacy cho DLCN y tế nhạy cảm.


          A selector of the type of consent being presented: ADR, Privacy, Treatment, Research. This list is now extensible.

          ShortPhạm vi đồng ýWhich of the four areas this resource covers (extensible)
          Control1..1
          BindingUnless not suitable, these codes SHALL be taken from ConsentScopeCodeshttp://hl7.org/fhir/ValueSet/consent-scope|4.0.1
          (extensible to http://hl7.org/fhir/ValueSet/consent-scope|4.0.1)

          The four anticipated uses for the Consent Resource.

          TypeCodeableConcept
          Is Modifiertrue because Allows changes to codes based on scope selection
          Must Supporttrue
          Obligations
            ObligationsActor
            SHALL:populate-if-knownNguồn tạo hồ sơ lâm sàng (Document Source)
            SHALL:no-error & SHALL:persistKho hồ sơ EMR (Repository)
            SHALL:no-error & SHALL:handleỨng dụng người dân (Citizen App)
            Summarytrue
            Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
            18. Consent.category
            Definition

            Phân loại chỉ thị đồng ý: quyền riêng tư, điều trị, nghiên cứu, đồng ý qua đại diện. Theo Luật 91/2025/QH15 Điều 9 (sự đồng ý), Điều 24 (đại diện theo pháp luật). Các trường hợp KHÔNG cần đồng ý (Điều 19) không phải loại đồng ý và không được ghi trên Consent — dùng VNCoreAuditEventLegalBasisDecision. / Consent directive category for privacy, treatment, research, or representation. Article 19 processing without consent is not a consent category and is recorded with VNCoreAuditEventLegalBasisDecision.


            A classification of the type of consents found in the statement. This element supports indexing and retrieval of consent statements.

            ShortLoại đồng ýClassification of the consent statement - for indexing/retrieval
            Control1..*
            BindingUnless not suitable, these codes SHALL be taken from Loại đồng ý — VN Consent Category ValueSethttp://hl7.org/fhir/ValueSet/consent-category|4.0.1
            (extensible to http://fhir.hl7.org.vn/core/ValueSet/vn-consent-category-vs)
            TypeCodeableConcept
            Is Modifierfalse
            Must Supporttrue
            Obligations
              ObligationsActor
              SHALL:populate-if-knownNguồn tạo hồ sơ lâm sàng (Document Source)
              SHALL:no-error & SHALL:persistKho hồ sơ EMR (Repository)
              SHALL:no-error & SHALL:handleỨng dụng người dân (Citizen App)
              Summarytrue
              Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
              20. Consent.patient
              Definition

              Bệnh nhân — chủ thể dữ liệu cá nhân theo Luật 91/2025/QH15 Điều 2 khoản 5.


              The patient/healthcare consumer to whom this consent applies.

              ShortChủ thể dữ liệuWho the consent applies to
              Comments

              Commonly, the patient the consent pertains to is the author, but for young and old people, it may be some other person.

              Control10..1
              TypeReference(Bệnh nhân VN Core — VN Core Patient Profile, Patient)
              Is Modifierfalse
              Must Supporttrue
              Obligations
                ObligationsActor
                SHALL:populate-if-knownNguồn tạo hồ sơ lâm sàng (Document Source)
                SHALL:no-error & SHALL:persistKho hồ sơ EMR (Repository)
                SHALL:no-error & SHALL:handleỨng dụng người dân (Citizen App)
                Summarytrue
                Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                22. Consent.dateTime
                Definition

                Thời điểm ghi nhận sự đồng ý hoặc từ chối. Hình thức đồng ý phải rõ ràng, cụ thể, kiểm chứng được theo Luật 91/2025/QH15 Điều 9 khoản 3; riêng element này không đủ để chứng minh toàn bộ hiệu lực của sự đồng ý.


                When this Consent was issued / created / indexed.

                ShortThời điểm đồng ýWhen this Consent was created or indexed
                Comments

                This is not the time of the original consent, but the time that this statement was made or derived.

                Control10..1
                TypedateTime
                Is Modifierfalse
                Primitive ValueThis primitive element may be present, or absent, or replaced by an extension
                Must Supporttrue
                Obligations
                  ObligationsActor
                  SHALL:populate-if-knownNguồn tạo hồ sơ lâm sàng (Document Source)
                  SHALL:no-error & SHALL:persistKho hồ sơ EMR (Repository)
                  SHALL:no-error & SHALL:handleỨng dụng người dân (Citizen App)
                  Summarytrue
                  Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                  24. Consent.performer
                  Definition

                  Người thực hiện đồng ý: bệnh nhân, hoặc người đại diện theo pháp luật đối với trẻ em/người bị mất hoặc hạn chế năng lực hành vi dân sự (Luật 91/2025/QH15 Điều 24 khoản 2). Trẻ em từ đủ 07 tuổi: công bố thông tin đời tư cần đồng ý của CẢ trẻ và người đại diện.


                  Either the Grantor, which is the entity responsible for granting the rights listed in a Consent Directive or the Grantee, which is the entity responsible for complying with the Consent Directive, including any obligations or limitations on authorizations and enforcement of prohibitions.

                  ShortNgười đồng ýWho is agreeing to the policy and rules
                  Comments

                  Không ép 1..1 vì người thực hiện có thể được xác định qua bằng chứng đã lưu thay vì element này; ràng buộc thật nằm ở invariant vn-consent-choice-actor-identifiable — bản ghi có rule permit/deny phải có performer HOẶC source[x]/evidenceLocator xác định được người thực hiện lựa chọn.


                  Commonly, the patient the consent pertains to is the consentor, but particularly for young and old people, it may be some other person - e.g. a legal guardian.

                  Control0..*
                  TypeReference(Bệnh nhân VN Core — VN Core Patient Profile, Người liên quan/người giám hộ VN Core — VN Core RelatedPerson Profile, Nhân viên y tế VN Core — VN Core Practitioner Profile, Organization, Patient, Practitioner, RelatedPerson, PractitionerRole)
                  Is Modifierfalse
                  Must Supporttrue
                  Must Support TypesNo must-support rules about the choice of types/profiles
                  Obligations
                    ObligationsActor
                    SHALL:populate-if-knownNguồn tạo hồ sơ lâm sàng (Document Source)
                    SHALL:no-error & SHALL:persistKho hồ sơ EMR (Repository)
                    SHALL:no-error & SHALL:handleỨng dụng người dân (Citizen App)
                    Summarytrue
                    Alternate Namesconsentor
                    Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                    26. Consent.organization
                    Definition

                    Cơ sở khám chữa bệnh quản lý bản ghi. Vai trò bên kiểm soát dữ liệu (Luật 91/2025/QH15 Điều 2 khoản 7), bên kiểm soát và xử lý dữ liệu (Điều 2 khoản 9), hoặc vai trò khác phải được xác định từ hoạt động thực tế; không được suy ra chỉ từ Reference này. Bên có nghĩa vụ tương ứng phải lưu trữ và chứng minh sự đồng ý theo NĐ 356/2025/NĐ-CP Điều 6 khoản 2.


                    The organization that manages the consent, and the framework within which it is executed.

                    ShortCSKCB quản lý đồng ýCustodian of the consent
                    Control0..*
                    TypeReference(Cơ sở y tế VN Core — VN Core Organization Profile, Organization)
                    Is Modifierfalse
                    Must Supporttrue
                    Obligations
                      ObligationsActor
                      SHALL:populate-if-knownNguồn tạo hồ sơ lâm sàng (Document Source)
                      SHALL:no-error & SHALL:persistKho hồ sơ EMR (Repository)
                      SHALL:no-error & SHALL:handleỨng dụng người dân (Citizen App)
                      Summarytrue
                      Alternate Namescustodian
                      Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                      28. Consent.source[x]
                      Definition

                      Tài liệu nguồn có thể là bản scan chữ ký, phiếu đồng ý điện tử, hoặc ghi nhận khác kiểm chứng được (5 phương thức theo NĐ 356/2025/NĐ-CP Điều 6 khoản 1 — xem vn-ext-consent-method). Bên kiểm soát phải lưu trữ sự đồng ý và chịu trách nhiệm chứng minh khi tranh chấp (Điều 6 khoản 2); bằng chứng có thể nằm trong hoặc ngoài FHIR, và source[x] không tự chứng minh hiệu lực. Im lặng/không phản hồi không được coi là đồng ý (Luật 91/2025/QH15 Điều 9 khoản 4 điểm d); cấm thiết lập mặc định đồng ý (NĐ 356/2025/NĐ-CP Điều 6 khoản 3).


                      The source on which this consent statement is based. The source might be a scanned original paper form, or a reference to a consent that links back to such a source, a reference to a document repository (e.g. XDS) that stores the original consent document.

                      ShortBản gốc đồng ýSource from which this consent is taken
                      Comments

                      The source can be contained inline (Attachment), referenced directly (Consent), referenced in a consent repository (DocumentReference), or simply by an identifier (Identifier), e.g. a CDA document id.

                      Control0..1
                      TypeChoice of: Attachment, Reference(Consent, DocumentReference, Contract, QuestionnaireResponse)
                      [x] NoteSeeChoice of Data Typesfor further information about how to use [x]
                      Is Modifierfalse
                      Must Supporttrue
                      Must Support TypesNo must-support rules about the choice of types/profiles
                      Obligations
                        ObligationsActor
                        SHALL:populate-if-knownNguồn tạo hồ sơ lâm sàng (Document Source)
                        SHALL:no-error & SHALL:persistKho hồ sơ EMR (Repository)
                        SHALL:no-error & SHALL:handleỨng dụng người dân (Citizen App)
                        Summarytrue
                        Requirements

                        Bằng chứng đồng ý phải cho phép chứng minh nội dung Luật 91/2025/QH15 Điều 9 khoản 2 (loại dữ liệu/mục đích; bên kiểm soát/xử lý; quyền và nghĩa vụ của chủ thể) và thông báo riêng khi xử lý dữ liệu cá nhân nhạy cảm theo NĐ 356/2025/NĐ-CP Điều 6 khoản 4. Từ 0.10.0, các nội dung này có evidence contract có cấu trúc là vn-ext-consent-disclosure và được ép bằng invariant cho mọi bản ghi có rule permit. source[x] giữ vai trò trỏ tới BẢN GỐC đã lưu (Điều 6 khoản 2) — bắt buộc có source[x] hoặc evidenceLocator; bản thân source[x] không thay được nội dung đã thông báo, và nội dung đã thông báo không thay được bản gốc.

                        Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                        30. Consent.policy
                        Definition

                        Tham chiếu đến văn bản hoặc chính sách liên quan. Việc khai báo URI không tự xác lập căn cứ pháp lý hoặc chứng minh tuân thủ.


                        The references to the policies that are included in this consent scope. Policies may be organizational, but are often defined jurisdictionally, or in law.

                        ShortCăn cứ pháp lýPolicies covered by this consent
                        Control0..*
                        TypeBackboneElement
                        Is Modifierfalse
                        Must Supporttrue
                        Obligations
                          ObligationsActor
                          SHALL:populate-if-knownNguồn tạo hồ sơ lâm sàng (Document Source)
                          SHALL:no-error & SHALL:persistKho hồ sơ EMR (Repository)
                          SHALL:no-error & SHALL:handleỨng dụng người dân (Citizen App)
                          Summaryfalse
                          Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                          32. Consent.policy.modifierExtension
                          Definition

                          May be used to represent additional information that is not part of the basic definition of the element and that modifies the understanding of the element in which it is contained and/or the understanding of the containing element's descendants. Usually modifier elements provide negation or qualification. To make the use of extensions safe and manageable, there is a strict set of governance applied to the definition and use of extensions. Though any implementer can define an extension, there is a set of requirements that SHALL be met as part of the definition of the extension. Applications processing a resource are required to check for modifier extensions.

                          Modifier extensions SHALL NOT change the meaning of any elements on Resource or DomainResource (including cannot change the meaning of modifierExtension itself).

                          ShortExtensions that cannot be ignored even if unrecognized
                          Comments

                          There can be no stigma associated with the use of extensions by any application, project, or standard - regardless of the institution or jurisdiction that uses or defines the extensions. The use of extensions is what allows the FHIR specification to retain a core level of simplicity for everyone.

                          Control0..*
                          TypeExtension
                          Is Modifiertrue because Modifier extensions are expected to modify the meaning or interpretation of the element that contains them
                          Summarytrue
                          Requirements

                          Modifier extensions allow for extensions that cannot be safely ignored to be clearly distinguished from the vast majority of extensions which can be safely ignored. This promotes interoperability by eliminating the need for implementers to prohibit the presence of extensions. For further information, see the definition of modifier extensions.

                          Alternate Namesextensions, user content, modifiers
                          Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                          ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
                          34. Consent.policy.authority
                          Definition

                          Entity or Organization having regulatory jurisdiction or accountability for enforcing policies pertaining to Consent Directives.

                          ShortCơ quan ban hànhEnforcement source for policy
                          Control0..1
                          This element is affected by the following invariants: ppc-1
                          Typeuri
                          Is Modifierfalse
                          Primitive ValueThis primitive element may be present, or absent, or replaced by an extension
                          Summaryfalse
                          Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                          36. Consent.policy.uri
                          Definition

                          URL/URI văn bản pháp luật (VD: Luật 91/2025/QH15, NĐ 356/2025/NĐ-CP, TT 13/2025/TT-BYT).


                          The references to the policies that are included in this consent scope. Policies may be organizational, but are often defined jurisdictionally, or in law.

                          ShortURL văn bản pháp lýSpecific policy covered by this consent
                          Comments

                          This element is for discoverability / documentation and does not modify or qualify the policy rules.

                          Control0..1
                          This element is affected by the following invariants: ppc-1
                          Typeuri
                          Is Modifierfalse
                          Primitive ValueThis primitive element may be present, or absent, or replaced by an extension
                          Must Supporttrue
                          Summaryfalse
                          Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                          38. Consent.provision
                          Definition

                          Quy tắc cho phép/từ chối xử lý dữ liệu theo mục đích, đối tượng, thời hạn cụ thể.


                          An exception to the base policy of this consent. An exception can be an addition or removal of access permissions.

                          ShortQuy tắc đồng ý chi tiếtConstraints to the base Consent.policyRule
                          Control0..1
                          TypeBackboneElement
                          Is Modifierfalse
                          Must Supporttrue
                          Obligations
                            ObligationsActor
                            SHALL:populate-if-knownNguồn tạo hồ sơ lâm sàng (Document Source)
                            SHALL:no-error & SHALL:persistKho hồ sơ EMR (Repository)
                            SHALL:no-error & SHALL:handleỨng dụng người dân (Citizen App)
                            Summarytrue
                            Requirements

                            Mỗi quy tắc triển khai phải truy vết được tới nội dung đồng ý đã cung cấp theo Luật 91/2025/QH15 Điều 9 khoản 2. Từ 0.10.0: mọi rule permit bắt buộc có purpose (vn-consent-permit-purpose-required), và nội dung đã thông báo — loại dữ liệu, bên kiểm soát và vai trò, quyền và nghĩa vụ của chủ thể, thông báo dữ liệu nhạy cảm — bắt buộc khai ở vn-ext-consent-disclosure cấp Consent.

                            Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                            40. Consent.provision.modifierExtension
                            Definition

                            May be used to represent additional information that is not part of the basic definition of the element and that modifies the understanding of the element in which it is contained and/or the understanding of the containing element's descendants. Usually modifier elements provide negation or qualification. To make the use of extensions safe and manageable, there is a strict set of governance applied to the definition and use of extensions. Though any implementer can define an extension, there is a set of requirements that SHALL be met as part of the definition of the extension. Applications processing a resource are required to check for modifier extensions.

                            Modifier extensions SHALL NOT change the meaning of any elements on Resource or DomainResource (including cannot change the meaning of modifierExtension itself).

                            ShortExtensions that cannot be ignored even if unrecognized
                            Comments

                            There can be no stigma associated with the use of extensions by any application, project, or standard - regardless of the institution or jurisdiction that uses or defines the extensions. The use of extensions is what allows the FHIR specification to retain a core level of simplicity for everyone.

                            Control0..*
                            TypeExtension
                            Is Modifiertrue because Modifier extensions are expected to modify the meaning or interpretation of the element that contains them
                            Summarytrue
                            Requirements

                            Modifier extensions allow for extensions that cannot be safely ignored to be clearly distinguished from the vast majority of extensions which can be safely ignored. This promotes interoperability by eliminating the need for implementers to prohibit the presence of extensions. For further information, see the definition of modifier extensions.

                            Alternate Namesextensions, user content, modifiers
                            Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                            ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
                            42. Consent.provision.type
                            Definition

                            Action to take - permit or deny - when the rule conditions are met. Not permitted in root rule, required in all nested rules.

                            Shortdeny | permit
                            Comments

                            R4: type không được dùng ở root rule — root chỉ là khung; mọi rule permit/deny nằm ở provision.provision (vn-consent-provision-structure).

                            Control0..01
                            BindingThe codes SHALL be taken from ConsentProvisionTypehttp://hl7.org/fhir/ValueSet/consent-provision-type|4.0.1
                            (required to http://hl7.org/fhir/ValueSet/consent-provision-type|4.0.1)

                            How a rule statement is applied, such as adding additional consent or removing consent.

                            Typecode
                            Is Modifierfalse
                            Primitive ValueThis primitive element may be present, or absent, or replaced by an extension
                            Summarytrue
                            Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                            44. Consent.provision.period
                            Definition

                            Thời hạn đồng ý (nếu chủ thể ấn định). Chủ thể có quyền yêu cầu rút lại/hạn chế xử lý theo Luật 91/2025/QH15 Điều 10 (trừ trường hợp Điều 19 hoặc pháp luật quy định khác). Bằng chứng về thời hạn và việc rút lại phải được quản lý theo quy trình áp dụng; Luật không bắt buộc một representation FHIR cụ thể.


                            The timeframe in this rule is valid.

                            ShortThời hạn hiệu lựcTimeframe for this rule
                            Comments

                            KHÔNG bắt buộc period.end: sự đồng ý vô thời hạn là hợp pháp — có hiệu lực cho đến khi chủ thể thay đổi (Luật 91/2025/QH15 Điều 9 khoản 4 điểm c). Invariant vn-consent-period-end-required (≤0.7.0) đã gỡ vì mâu thuẫn điều khoản này.

                            Control0..1
                            TypePeriod
                            Is Modifierfalse
                            Must Supporttrue
                            Summarytrue
                            Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                            46. Consent.provision.actor
                            Definition

                            Bên được phép/từ chối xử lý: CSKCB, BHXH, cơ quan y tế dự phòng, người đại diện, v.v. LƯU Ý Điều 26 khoản 2 Luật 91/2025/QH15: cấm cung cấp DLCN cho bên thứ ba là tổ chức CSSK/bảo hiểm khác trừ khi chủ thể yêu cầu bằng văn bản hoặc thuộc Điều 19 khoản 1 — mô hình mặc định là deny với bên thứ ba.


                            Who or what is controlled by this rule. Use group to identify a set of actors by some property they share (e.g. 'admitting officers').

                            ShortBên liên quanWho|what controlled by this rule (or group, by role)
                            Control0..*
                            TypeBackboneElement
                            Is Modifierfalse
                            Summaryfalse
                            Meaning if MissingThere is no specific actor associated with the exception
                            Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                            48. Consent.provision.actor.modifierExtension
                            Definition

                            May be used to represent additional information that is not part of the basic definition of the element and that modifies the understanding of the element in which it is contained and/or the understanding of the containing element's descendants. Usually modifier elements provide negation or qualification. To make the use of extensions safe and manageable, there is a strict set of governance applied to the definition and use of extensions. Though any implementer can define an extension, there is a set of requirements that SHALL be met as part of the definition of the extension. Applications processing a resource are required to check for modifier extensions.

                            Modifier extensions SHALL NOT change the meaning of any elements on Resource or DomainResource (including cannot change the meaning of modifierExtension itself).

                            ShortExtensions that cannot be ignored even if unrecognized
                            Comments

                            There can be no stigma associated with the use of extensions by any application, project, or standard - regardless of the institution or jurisdiction that uses or defines the extensions. The use of extensions is what allows the FHIR specification to retain a core level of simplicity for everyone.

                            Control0..*
                            TypeExtension
                            Is Modifiertrue because Modifier extensions are expected to modify the meaning or interpretation of the element that contains them
                            Summarytrue
                            Requirements

                            Modifier extensions allow for extensions that cannot be safely ignored to be clearly distinguished from the vast majority of extensions which can be safely ignored. This promotes interoperability by eliminating the need for implementers to prohibit the presence of extensions. For further information, see the definition of modifier extensions.

                            Alternate Namesextensions, user content, modifiers
                            Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                            ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
                            50. Consent.provision.actor.role
                            Definition

                            How the individual is involved in the resources content that is described in the exception.

                            ShortHow the actor is involved
                            Control1..1
                            BindingUnless not suitable, these codes SHALL be taken from SecurityRoleTypehttp://hl7.org/fhir/ValueSet/security-role-type|4.0.1
                            (extensible to http://hl7.org/fhir/ValueSet/security-role-type|4.0.1)

                            How an actor is involved in the consent considerations.

                            TypeCodeableConcept
                            Is Modifierfalse
                            Summaryfalse
                            Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                            52. Consent.provision.actor.reference
                            Definition

                            The resource that identifies the actor. To identify actors by type, use group to identify a set of actors by some property they share (e.g. 'admitting officers').

                            ShortResource for the actor (or group, by role)
                            Control1..1
                            TypeReference(Device, Group, CareTeam, Organization, Patient, Practitioner, RelatedPerson, PractitionerRole)
                            Is Modifierfalse
                            Summaryfalse
                            Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                            54. Consent.provision.purpose
                            Definition

                            Mục đích cụ thể: khám chữa bệnh, BHYT, y tế công cộng, nghiên cứu, bệnh án điện tử, chia sẻ hồ sơ. Sự đồng ý thể hiện theo TỪNG mục đích — Luật 91/2025/QH15 Điều 9 khoản 4 điểm a; không được kèm điều kiện ép đồng ý mục đích khác (điểm b).


                            The context of the activities a user is taking - why the user is accessing the data - that are controlled by this rule.

                            ShortMục đích xử lýContext of activities covered by this rule
                            Comments

                            When the purpose of use tag is on the data, access request purpose of use shall not conflict.

                            Control0..*
                            BindingUnless not suitable, these codes SHALL be taken from Mục đích xử lý dữ liệu y tế — VN Consent Purpose ValueSethttp://terminology.hl7.org/ValueSet/v3-PurposeOfUse
                            (extensible to http://fhir.hl7.org.vn/core/ValueSet/vn-consent-purpose-vs)
                            TypeCoding
                            Is Modifierfalse
                            Must Supporttrue
                            Summarytrue
                            Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                            56. Consent.provision.class
                            Definition

                            Loại resource FHIR được phép/từ chối: Condition, Observation, Claim, v.v.


                            The class of information covered by this rule. The type can be a FHIR resource type, a profile on a type, or a CDA document, or some other type that indicates what sort of information the consent relates to.

                            ShortLoại dữ liệue.g. Resource Type, Profile, CDA, etc.
                            Comments

                            Multiple types are or'ed together. The intention of the contentType element is that the codes refer to profiles or document types defined in a standard or an implementation guide somewhere.

                            Control0..*
                            BindingUnless not suitable, these codes SHALL be taken from ConsentContentClasshttp://hl7.org/fhir/ValueSet/consent-content-class|4.0.1
                            (extensible to http://hl7.org/fhir/ValueSet/consent-content-class|4.0.1)

                            The class (type) of information a consent rule covers.

                            TypeCoding
                            Is Modifierfalse
                            Summarytrue
                            Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                            58. Consent.provision.provision
                            Definition

                            Rules which provide exceptions to the base rule or subrules.

                            ShortCác rule permit/denyNested Exception Rules
                            Control0..*
                            TypeBackboneElement
                            Is Modifierfalse
                            Must Supporttrue
                            Summaryfalse
                            Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                            60. Consent.provision.provision.modifierExtension
                            Definition

                            May be used to represent additional information that is not part of the basic definition of the element and that modifies the understanding of the element in which it is contained and/or the understanding of the containing element's descendants. Usually modifier elements provide negation or qualification. To make the use of extensions safe and manageable, there is a strict set of governance applied to the definition and use of extensions. Though any implementer can define an extension, there is a set of requirements that SHALL be met as part of the definition of the extension. Applications processing a resource are required to check for modifier extensions.

                            Modifier extensions SHALL NOT change the meaning of any elements on Resource or DomainResource (including cannot change the meaning of modifierExtension itself).

                            ShortExtensions that cannot be ignored even if unrecognized
                            Comments

                            There can be no stigma associated with the use of extensions by any application, project, or standard - regardless of the institution or jurisdiction that uses or defines the extensions. The use of extensions is what allows the FHIR specification to retain a core level of simplicity for everyone.

                            Control0..*
                            TypeExtension
                            Is Modifiertrue because Modifier extensions are expected to modify the meaning or interpretation of the element that contains them
                            Summarytrue
                            Requirements

                            Modifier extensions allow for extensions that cannot be safely ignored to be clearly distinguished from the vast majority of extensions which can be safely ignored. This promotes interoperability by eliminating the need for implementers to prohibit the presence of extensions. For further information, see the definition of modifier extensions.

                            Alternate Namesextensions, user content, modifiers
                            Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                            ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
                            62. Consent.provision.provision.type
                            Definition

                            permit = cho phép xử lý, deny = từ chối xử lý. Quyền đồng ý/không đồng ý/rút lại theo Luật 91/2025/QH15 Điều 4 khoản 1 điểm b; với thông tin sức khoẻ, đồng ý là bắt buộc trừ Điều 19 khoản 1 (Điều 26 khoản 1 điểm a). Từ chối đang hiệu lực = status active + rule deny (nested).


                            Action to take - permit or deny - when the rule conditions are met. Not permitted in root rule, required in all nested rules.

                            ShortCho phép / Từ chốideny | permit
                            Control10..1
                            BindingThe codes SHALL be taken from ConsentProvisionTypehttp://hl7.org/fhir/ValueSet/consent-provision-type|4.0.1
                            (required to http://hl7.org/fhir/ValueSet/consent-provision-type|4.0.1)

                            How a rule statement is applied, such as adding additional consent or removing consent.

                            Typecode
                            Is Modifierfalse
                            Primitive ValueThis primitive element may be present, or absent, or replaced by an extension
                            Must Supporttrue
                            Summarytrue
                            Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                            64. Consent.provision.provision.actor
                            Definition

                            Who or what is controlled by this rule. Use group to identify a set of actors by some property they share (e.g. 'admitting officers').

                            ShortWho|what controlled by this rule (or group, by role)
                            Control0..*
                            TypeBackboneElement
                            Is Modifierfalse
                            Summaryfalse
                            Meaning if MissingThere is no specific actor associated with the exception
                            Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                            SlicingThis element introduces a set of slices on Consent.provision.provision.actor. The slices areUnordered and Open, and can be differentiated using the following discriminators:
                            • exists @ extension('http://fhir.hl7.org.vn/core/StructureDefinition/vn-ext-representation-authority')
                            • 66. Consent.provision.provision.actor.modifierExtension
                              Definition

                              May be used to represent additional information that is not part of the basic definition of the element and that modifies the understanding of the element in which it is contained and/or the understanding of the containing element's descendants. Usually modifier elements provide negation or qualification. To make the use of extensions safe and manageable, there is a strict set of governance applied to the definition and use of extensions. Though any implementer can define an extension, there is a set of requirements that SHALL be met as part of the definition of the extension. Applications processing a resource are required to check for modifier extensions.

                              Modifier extensions SHALL NOT change the meaning of any elements on Resource or DomainResource (including cannot change the meaning of modifierExtension itself).

                              ShortExtensions that cannot be ignored even if unrecognized
                              Comments

                              There can be no stigma associated with the use of extensions by any application, project, or standard - regardless of the institution or jurisdiction that uses or defines the extensions. The use of extensions is what allows the FHIR specification to retain a core level of simplicity for everyone.

                              Control0..*
                              TypeExtension
                              Is Modifiertrue because Modifier extensions are expected to modify the meaning or interpretation of the element that contains them
                              Summarytrue
                              Requirements

                              Modifier extensions allow for extensions that cannot be safely ignored to be clearly distinguished from the vast majority of extensions which can be safely ignored. This promotes interoperability by eliminating the need for implementers to prohibit the presence of extensions. For further information, see the definition of modifier extensions.

                              Alternate Namesextensions, user content, modifiers
                              Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                              ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
                              68. Consent.provision.provision.actor.role
                              Definition

                              How the individual is involved in the resources content that is described in the exception.

                              ShortHow the actor is involved
                              Control1..1
                              BindingUnless not suitable, these codes SHALL be taken from SecurityRoleTypehttp://hl7.org/fhir/ValueSet/security-role-type|4.0.1
                              (extensible to http://hl7.org/fhir/ValueSet/security-role-type|4.0.1)

                              How an actor is involved in the consent considerations.

                              TypeCodeableConcept
                              Is Modifierfalse
                              Summaryfalse
                              Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                              70. Consent.provision.provision.actor.reference
                              Definition

                              The resource that identifies the actor. To identify actors by type, use group to identify a set of actors by some property they share (e.g. 'admitting officers').

                              ShortResource for the actor (or group, by role)
                              Control1..1
                              TypeReference(Device, Group, CareTeam, Organization, Patient, Practitioner, RelatedPerson, PractitionerRole)
                              Is Modifierfalse
                              Summaryfalse
                              Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                              72. Consent.provision.provision.actor:representative
                              Slice Namerepresentative
                              Definition

                              Actor là người đại diện theo pháp luật/giám hộ/được uỷ quyền (Luật 91/2025/QH15 Điều 24 khoản 2). Profile yêu cầu extension vn-ext-representation-authority ngay tại actor này để hệ thống triển khai có thể kiểm tra type/source/verifiedDate/period và áp dụng rule permit/deny. Đây là mô hình kỹ thuật của IG, không thay thế việc xác minh thẩm quyền thực tế hoặc tự tạo hiệu lực pháp lý. Hạn chế lớp dữ liệu được biểu diễn bằng rule type=deny + securityLabel (vn-data-sensitivity-class-vs), thay cho sub-extension restrictedSensitivity đã xoá ở 0.8.0.


                              Who or what is controlled by this rule. Use group to identify a set of actors by some property they share (e.g. 'admitting officers').

                              ShortNgười đại diện/giám hộ — mang token thẩm quyềnWho|what controlled by this rule (or group, by role)
                              Control0..*
                              TypeBackboneElement
                              Is Modifierfalse
                              Must Supporttrue
                              Summaryfalse
                              Meaning if MissingThere is no specific actor associated with the exception
                              Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                              74. Consent.provision.provision.actor:representative.extension
                              Definition

                              An Extension


                              May be used to represent additional information that is not part of the basic definition of the element. To make the use of extensions safe and manageable, there is a strict set of governance applied to the definition and use of extensions. Though any implementer can define an extension, there is a set of requirements that SHALL be met as part of the definition of the extension.

                              ShortExtensionAdditional content defined by implementations
                              Comments

                              There can be no stigma associated with the use of extensions by any application, project, or standard - regardless of the institution or jurisdiction that uses or defines the extensions. The use of extensions is what allows the FHIR specification to retain a core level of simplicity for everyone.

                              Control10..*
                              TypeExtension
                              Is Modifierfalse
                              Summaryfalse
                              Alternate Namesextensions, user content
                              Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                              ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
                              SlicingThis element introduces a set of slices on Consent.provision.provision.actor.extension. The slices areUnordered and Open, and can be differentiated using the following discriminators:
                              • value @ url
                              • 76. Consent.provision.provision.actor:representative.extension:representationAuthority
                                Slice NamerepresentationAuthority
                                Definition

                                Extension ghi nhận THẨM QUYỀN PHÁP LÝ để một người đại diện/giám hộ/được uỷ quyền hành động thay người khác. Mô hình hoá 'token đại diện' phục vụ Policy Decision Point (PDP): miền thẩm quyền, loại thẩm quyền, nguồn xác minh, bằng chứng, thời điểm xác minh, thời hạn. PDP deny-by-default khi quan hệ mâu thuẫn/hết hạn.

                                THAY ĐỔI 0.10.0 đợt 2 (breaking — kiểm toán 06-07/08/2026, analysis/90 §6.2): tách HAI MIỀN thẩm quyền bằng domain 1..1, vì hai loại quyền không đồng nhất và không suy ra nhau: (1) healthcare-decision — quyết định thay về khám chữa bệnh (Luật KCB 15/2023/QH15 Điều 8); (2) data-subject-rights — thực hiện quyền chủ thể dữ liệu thay chủ thể: đồng ý, truy cập, chỉnh sửa, xoá dữ liệu (Luật 91/2025/QH15 Điều 24; Bộ luật Dân sự Điều 134-143) — vd cha/mẹ xem Sổ SKĐT của con qua VNeID. Một người giữ cả hai quyền = HAI instance extension, mỗi instance một miền với căn cứ, bằng chứng, thời hạn riêng. selectionBasis hạ 1..1 → 0..1: nó là khung của Luật KCB Điều 8 khoản 2 nên bắt buộc trong miền healthcare-decision và phải vắng trong miền data-subject-rights (invariant vn-representation-domain-basis). Thêm evidence 0..* — bằng chứng lặp được mang issuer/document/scope/purpose/validity; quan hệ gia đình hoặc bản ghi quan hệ dân cư KHÔNG tự chứng minh thẩm quyền (uỷ quyền bắt buộc có evidence — invariant vn-representation-proxy-evidence).

                                THAY ĐỔI 0.10.0 đợt 1 (breaking): thêm selectionBasis — một trong năm nhóm căn cứ lựa chọn tại Luật KCB 15/2023/QH15 Điều 8 khoản 2 điểm a-đ; thêm legalProvision 1..* để ghi văn bản và điều/khoản cụ thể, cho phép lặp vì một thẩm quyền thường dựa trên nhiều quy định đồng thời; nâng verifiedDate từ 0..1 lên 1..1. Kèm invariant vn-representation-type-selection-basis ràng loại thẩm quyền với nhóm căn cứ. Quy tắc một người bệnh chỉ có một người đại diện tại một thời điểm (Điều 8 khoản 1) CỐ Ý không invariant-hoá: nó cần truy vấn toàn bộ authority đang hiệu lực của cùng người bệnh, việc một instance đơn lẻ không thấy được — thuộc tầng PDP/service.

                                THAY ĐỔI 0.8.0 (breaking — hậu kiểm toán Codex): sub-extension restrictedSensitivity đã XOÁ — ngữ nghĩa hạn chế truy cập là QUYẾT ĐỊNH CHÍNH SÁCH, không phải thuộc tính token: biểu diễn bằng VNCoreConsent.provision (type=deny + securityLabel theo vn-data-sensitivity-class-vs + actor[representative] gắn chính extension này để link token↔consent — PDP resolve một chiều qua Consent). Căn cứ: Bộ luật Dân sự 2015 (đại diện/giám hộ/uỷ quyền); Luật Căn cước 2023 (quan hệ nhân thân CSDLQGDC); Luật 91/2025/QH15 Điều 24 (đại diện theo pháp luật) + Luật Trẻ em 2016 (dữ liệu trẻ em, lớp nhạy cảm).

                                ShortThẩm quyền đại diện truy cập dữ liệu — Representation Authority Extension
                                Control1..1
                                This element is affected by the following invariants: ele-1
                                TypeExtension(Thẩm quyền đại diện truy cập dữ liệu — Representation Authority Extension) (Complex Extension)
                                Is Modifierfalse
                                Must Supporttrue
                                Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
                                vn-representation-domain-basis: Miền quyết định khám chữa bệnh bắt buộc có căn cứ lựa chọn theo Luật KCB Điều 8 khoản 2; miền quyền chủ thể dữ liệu không dùng trục căn cứ đó. The healthcare-decision domain SHALL carry a selectionBasis; the data-subject-rights domain SHALL NOT. ((extension.where(url='domain').value.ofType(Coding).code = 'healthcare-decision' implies extension.where(url='selectionBasis').exists()) and (extension.where(url='domain').value.ofType(Coding).code = 'data-subject-rights' implies extension.where(url='selectionBasis').empty()))
                                vn-representation-type-selection-basis: Loại thẩm quyền phải tương thích với nhóm căn cứ lựa chọn tại Luật KCB Điều 8 khoản 2. The authority type SHALL be consistent with the statutory selection basis. (extension.where(url='selectionBasis').empty() or ((extension.where(url='selectionBasis').value.ofType(Coding).code = 'civil-code-representative') and (extension.where(url='type').value.ofType(Coding).code = 'legal-representative' or extension.where(url='type').value.ofType(Coding).code = 'guardian' or extension.where(url='type').value.ofType(Coding).code = 'delegated-proxy')) or ((extension.where(url='selectionBasis').value.ofType(Coding).code = 'responsible-legal-entity-appointed') and (extension.where(url='type').value.ofType(Coding).code = 'legal-representative' or extension.where(url='type').value.ofType(Coding).code = 'healthcare-agent')) or ((extension.where(url='selectionBasis').value.ofType(Coding).code = 'adult-patient-selected' or extension.where(url='selectionBasis').value.ofType(Coding).code = 'family-selected' or extension.where(url='selectionBasis').value.ofType(Coding).code = 'voluntary-obligation-performer') and extension.where(url='type').value.ofType(Coding).code = 'healthcare-agent'))
                                vn-representation-proxy-evidence: Thẩm quyền theo uỷ quyền phải kèm ít nhất một bằng chứng (văn bản uỷ quyền). A delegated-proxy authority SHALL carry at least one evidence entry. (extension.where(url='type').value.ofType(Coding).code = 'delegated-proxy' implies extension.where(url='evidence').exists())
                                vn-representation-proxy-bounded: Thẩm quyền theo uỷ quyền phải có GIỚI HẠN máy-đọc: NGÀY KẾT THÚC (period.end của token hoặc validity.end trong bằng chứng — chỉ có ngày bắt đầu là uỷ quyền vô thời hạn) VÀ phạm vi (scope trong ít nhất một bằng chứng) — Bộ luật Dân sự Điều 138/140/141. A delegated-proxy authority SHALL carry a machine-readable validity bound AND scope. (extension.where(url='type').value.ofType(Coding).code != 'delegated-proxy' or ((extension.where(url='period').value.ofType(Period).end.exists() or extension.where(url='evidence').extension.where(url='validity').value.ofType(Period).end.exists()) and extension.where(url='evidence').extension.where(url='scope').exists()))
                                78. Consent.provision.provision.actor:representative.modifierExtension
                                Definition

                                May be used to represent additional information that is not part of the basic definition of the element and that modifies the understanding of the element in which it is contained and/or the understanding of the containing element's descendants. Usually modifier elements provide negation or qualification. To make the use of extensions safe and manageable, there is a strict set of governance applied to the definition and use of extensions. Though any implementer can define an extension, there is a set of requirements that SHALL be met as part of the definition of the extension. Applications processing a resource are required to check for modifier extensions.

                                Modifier extensions SHALL NOT change the meaning of any elements on Resource or DomainResource (including cannot change the meaning of modifierExtension itself).

                                ShortExtensions that cannot be ignored even if unrecognized
                                Comments

                                There can be no stigma associated with the use of extensions by any application, project, or standard - regardless of the institution or jurisdiction that uses or defines the extensions. The use of extensions is what allows the FHIR specification to retain a core level of simplicity for everyone.

                                Control0..*
                                TypeExtension
                                Is Modifiertrue because Modifier extensions are expected to modify the meaning or interpretation of the element that contains them
                                Summarytrue
                                Requirements

                                Modifier extensions allow for extensions that cannot be safely ignored to be clearly distinguished from the vast majority of extensions which can be safely ignored. This promotes interoperability by eliminating the need for implementers to prohibit the presence of extensions. For further information, see the definition of modifier extensions.

                                Alternate Namesextensions, user content, modifiers
                                Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
                                80. Consent.provision.provision.actor:representative.role
                                Definition

                                How the individual is involved in the resources content that is described in the exception.

                                ShortHow the actor is involved
                                Control1..1
                                BindingUnless not suitable, these codes SHALL be taken from SecurityRoleTypehttp://hl7.org/fhir/ValueSet/security-role-type|4.0.1
                                (extensible to http://hl7.org/fhir/ValueSet/security-role-type|4.0.1)

                                How an actor is involved in the consent considerations.

                                TypeCodeableConcept
                                Is Modifierfalse
                                Summaryfalse
                                Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                82. Consent.provision.provision.actor:representative.reference
                                Definition

                                The resource that identifies the actor. To identify actors by type, use group to identify a set of actors by some property they share (e.g. 'admitting officers').

                                ShortResource for the actor (or group, by role)
                                Control1..1
                                TypeReference(Người liên quan/người giám hộ VN Core — VN Core RelatedPerson Profile, Device, Group, CareTeam, Organization, Patient, Practitioner, RelatedPerson, PractitionerRole)
                                Is Modifierfalse
                                Summaryfalse
                                Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                84. Consent.provision.provision.securityLabel
                                Definition

                                Lớp nhạy cảm dữ liệu (vn-data-sensitivity-class-vs) mà rule áp dụng. Mô hình hạn chế theo lớp: permit theo lớp cơ bản + provision con type=deny với securityLabel lớp bị hạn chế (vd special-protection với người đại diện của vị thành niên — thay sub-extension restrictedSensitivity đã xoá 0.8.0). PDP deny-by-default: không có provision permit phủ lớp dữ liệu → từ chối.


                                A security label, comprised of 0..* security label fields (Privacy tags), which define which resources are controlled by this exception.

                                ShortLớp nhạy cảm dữ liệu áp cho ruleSecurity Labels that define affected resources
                                Comments

                                If the consent specifies a security label of "R" then it applies to all resources that are labeled "R" or lower. E.g. for Confidentiality, it's a high water mark. For other kinds of security labels, subsumption logic applies. When the purpose of use tag is on the data, access request purpose of use shall not conflict.

                                Control0..*
                                BindingUnless not suitable, these codes SHALL be taken from Lớp nhạy cảm dữ liệu y tế — Vietnam Health Data Sensitivity Class ValueSethttp://hl7.org/fhir/ValueSet/security-labels|4.0.1
                                (extensible to http://fhir.hl7.org.vn/core/ValueSet/vn-data-sensitivity-class-vs)
                                TypeCoding
                                Is Modifierfalse
                                Must Supporttrue
                                Summarytrue
                                Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                86. Consent.provision.provision.purpose
                                Definition

                                Bắt buộc với rule permit (vn-consent-permit-purpose-required): sự đồng ý phải nêu mục đích xử lý và được thể hiện theo TỪNG mục đích — Luật 91/2025/QH15 Điều 9 khoản 2 điểm a và khoản 4 điểm a. Rule deny không bắt buộc purpose vì từ chối toàn phần là hợp lệ.


                                The context of the activities a user is taking - why the user is accessing the data - that are controlled by this rule.

                                ShortMục đích xử lý của rule nàyContext of activities covered by this rule
                                Comments

                                When the purpose of use tag is on the data, access request purpose of use shall not conflict.

                                Control0..*
                                BindingUnless not suitable, these codes SHALL be taken from Mục đích xử lý dữ liệu y tế — VN Consent Purpose ValueSethttp://terminology.hl7.org/ValueSet/v3-PurposeOfUse
                                (extensible to http://fhir.hl7.org.vn/core/ValueSet/vn-consent-purpose-vs)
                                TypeCoding
                                Is Modifierfalse
                                Summarytrue
                                Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))

                                Guidance on how to interpret the contents of this table can be foundhere

                                0. Consent
                                Invariantsvn-consent-rejected-not-permit: Bản ghi status=rejected (từ chối ngay từ đầu) không được chứa rule permit ở BẤT KỲ độ sâu nested nào — cho phép đang hiệu lực phải dùng status=active ((status = 'rejected') implies provision.repeat(provision).type.where($this = 'permit').empty())
                                vn-consent-provision-structure: Theo R4: root rule (Consent.provision) KHÔNG mang type; mọi rule permit/deny khai ở nested (provision.provision[*]) và bắt buộc có type (provision.exists() implies (provision.type.empty() and provision.provision.exists() and provision.repeat(provision).all(type.exists())))
                                vn-consent-no-processing-legal-basis: VNCoreConsent 0.9 chỉ biểu diễn lựa chọn của chủ thể và không được mang vn-ext-processing-legal-basis; xử lý không qua đồng ý dùng VNCoreAuditEventLegalBasisDecision / VNCoreConsent 0.9 represents data-subject choices only and SHALL NOT carry vn-ext-processing-legal-basis; processing without consent uses VNCoreAuditEventLegalBasisDecision (extension.where(url = 'http://fhir.hl7.org.vn/core/StructureDefinition/vn-ext-processing-legal-basis').empty())
                                vn-consent-permit-requires-disclosure: Bản ghi có rule permit phải mang nội dung đã thông báo (vn-ext-consent-disclosure) và phương thức thể hiện đồng ý (vn-ext-consent-method) — Luật 91/2025/QH15 Điều 9 khoản 2 và khoản 3; NĐ 356/2025/NĐ-CP Điều 6 khoản 1. A consent granting any permit rule SHALL carry the disclosure evidence and the declared consent method. (provision.repeat(provision).type.where($this = 'permit').exists() implies (extension.where(url = 'http://fhir.hl7.org.vn/core/StructureDefinition/vn-ext-consent-disclosure').exists() and extension.where(url = 'http://fhir.hl7.org.vn/core/StructureDefinition/vn-ext-consent-method').exists()))
                                vn-consent-permit-evidence-retained: Bản ghi có rule permit phải trỏ tới bằng chứng đồng ý đã lưu: source[x] trong FHIR hoặc evidenceLocator ngoài FHIR — NĐ 356/2025/NĐ-CP Điều 6 khoản 2 (bên kiểm soát lưu trữ sự đồng ý và chịu trách nhiệm chứng minh khi tranh chấp). Retained consent evidence SHALL be locatable. (provision.repeat(provision).type.where($this = 'permit').exists() implies (source.exists() or extension.where(url = 'http://fhir.hl7.org.vn/core/StructureDefinition/vn-ext-consent-disclosure').extension.where(url = 'evidenceLocator').exists()))
                                vn-consent-choice-actor-identifiable: Bản ghi có rule permit/deny phải xác định được NGƯỜI thực hiện lựa chọn: performer, hoặc bằng chứng trỏ được tới người đó (source[x] trong FHIR / evidenceLocator ngoài FHIR) — Luật 91/2025/QH15 Điều 9 khoản 3 (sự đồng ý phải kiểm chứng được), Điều 4 khoản 1 điểm b (quyền không đồng ý), Điều 24 (đại diện). A subject-choice record SHALL identify who made the choice via performer or locatable evidence. (provision.repeat(provision).type.exists() implies (performer.where(reference.exists() or identifier.exists()).exists() or source.exists() or extension.where(url = 'http://fhir.hl7.org.vn/core/StructureDefinition/vn-ext-consent-disclosure').extension.where(url = 'evidenceLocator').exists()))
                                vn-consent-permit-purpose-required: Mỗi rule permit phải nêu mục đích xử lý — Luật 91/2025/QH15 Điều 9 khoản 2 điểm a (mục đích xử lý là nội dung phải thông báo) và khoản 4 điểm a (đồng ý theo TỪNG mục đích). Every permit rule SHALL state its processing purpose. (provision.repeat(provision).where(type = 'permit').all(purpose.exists()))
                                vn-consent-disclosed-controller-role: Vai trò được thông báo cho chủ thể chỉ có thể là bên kiểm soát hoặc bên kiểm soát và xử lý — Luật 91/2025/QH15 Điều 9 khoản 2 điểm b. Bên xử lý và bên thứ ba không phải chủ thể của nghĩa vụ thông báo này. The disclosed party role SHALL be controller or controller-processor. (extension.where(url = 'http://fhir.hl7.org.vn/core/StructureDefinition/vn-ext-consent-disclosure').extension.where(url = 'controllerRole').value.ofType(Coding).code.all($this in ('controller' | 'controller-processor')))
                                vn-consent-rights-notice-versioned: Bản thông báo quyền và nghĩa vụ phải xác định được ĐÚNG bản đã trình: dùng DocumentReference, hoặc URL có ghim phiên bản. The rights notice SHALL be identifiable as the exact version presented. (extension.where(url = 'http://fhir.hl7.org.vn/core/StructureDefinition/vn-ext-consent-disclosure').extension.where(url = 'rightsNotice').all(value.ofType(Reference).exists() or value.ofType(url).matches('/v[0-9]')))
                                vn-consent-sensitive-notice-required: Nếu nội dung đã thông báo có loại dữ liệu thuộc danh mục nhạy cảm (NĐ 356/2025/NĐ-CP Điều 4 khoản 1) thì phải khai đã thông báo cho chủ thể rằng dữ liệu cần xử lý là dữ liệu cá nhân nhạy cảm — NĐ 356/2025/NĐ-CP Điều 6 khoản 4. Disclosing a sensitive-category data type SHALL come with the explicit sensitive-data notice. (extension.where(url = 'http://fhir.hl7.org.vn/core/StructureDefinition/vn-ext-consent-disclosure').extension.where(url = 'dataCategory').value.ofType(CodeableConcept).coding.where(system = 'http://fhir.hl7.org.vn/core/CodeSystem/vn-sensitive-personal-data-cs').exists() implies extension.where(url = 'http://fhir.hl7.org.vn/core/StructureDefinition/vn-ext-consent-disclosure').extension.where(url = 'sensitiveDataNotice').value.ofType(boolean) = true)
                                vn-consent-disclosure-before-consent: Thời điểm trình nội dung thông báo không được sau thời điểm đồng ý — sự đồng ý chỉ có hiệu lực khi chủ thể ĐÃ biết rõ các thông tin đó (Luật 91/2025/QH15 Điều 9 khoản 2). Disclosure SHALL NOT be timestamped after the consent itself. (extension.where(url = 'http://fhir.hl7.org.vn/core/StructureDefinition/vn-ext-consent-disclosure').extension.where(url = 'disclosedAt').value.ofType(dateTime).all($this <= %resource.dateTime))
                                2. Consent.extension
                                SlicingThis element introduces a set of slices on Consent.extension. The slices areUnordered and Open, and can be differentiated using the following discriminators:
                                • value @ url
                                • 4. Consent.extension:processingLegalBasis
                                  Slice NameprocessingLegalBasis
                                  Definition

                                  Consent chỉ biểu diễn lựa chọn của chủ thể (đồng ý, từ chối, rút lại hoặc giới hạn). Xử lý không cần đồng ý theo Luật 91/2025/QH15 Điều 19 khoản 1 dùng VNCoreAuditEventLegalBasisDecision. Context Consent của extension chỉ được giữ trong dòng 0.9 để consumer đọc dữ liệu legacy 0.8 và dự kiến gỡ ở 1.0. / Consent represents only the data subject's choice. Processing without consent under Article 19(1) uses VNCoreAuditEventLegalBasisDecision. The Consent context remains for legacy 0.8 reads during 0.9 and is planned for removal in 1.0.

                                  ShortCấm authoring căn cứ Điều 19 trên Consent / No Article 19 authoring on Consent
                                  Control0..0
                                  TypeExtension(Căn cứ xử lý không cần đồng ý — Processing Legal Basis Extension) (Extension Type: CodeableConcept)
                                  6. Consent.extension:consentMethod
                                  Slice NameconsentMethod
                                  ShortPhương thức chủ thể dữ liệu thể hiện sự đồng ý
                                  Control0..1
                                  TypeExtension(Phương thức thể hiện đồng ý — VN Consent Method) (Extension Type: CodeableConcept)
                                  Must Supporttrue
                                  Obligations
                                    ObligationsActor
                                    SHALL:populate-if-knownNguồn tạo hồ sơ lâm sàng (Document Source)
                                    SHALL:no-error & SHALL:persistKho hồ sơ EMR (Repository)
                                    SHALL:no-error & SHALL:handleỨng dụng người dân (Citizen App)
                                    8. Consent.extension:consentDisclosure
                                    Slice NameconsentDisclosure
                                    Definition

                                    Bắt buộc khi bản ghi có rule permit (invariant vn-consent-permit-requires-disclosure): loại dữ liệu, bên kiểm soát và vai trò, bản thông báo quyền và nghĩa vụ, và thông báo dữ liệu nhạy cảm. Xem vn-ext-consent-disclosure.

                                    ShortNội dung đã thông báo cho chủ thể khi xin đồng ý
                                    Control0..1
                                    TypeExtension(Nội dung đã thông báo khi xin đồng ý — Consent Disclosure Evidence Extension) (Complex Extension)
                                    Must Supporttrue
                                    Obligations
                                      ObligationsActor
                                      SHALL:populate-if-knownNguồn tạo hồ sơ lâm sàng (Document Source)
                                      SHALL:no-error & SHALL:persistKho hồ sơ EMR (Repository)
                                      SHALL:no-error & SHALL:handleỨng dụng người dân (Citizen App)
                                      10. Consent.status
                                      Definition

                                      Ánh xạ kỹ thuật của profile từ các quyền tại Luật 91/2025/QH15: active (bản ghi đang hiệu lực — kể cả từ chối chủ động qua rule nested provision.provision.type=deny), rejected (đề nghị đồng ý bị từ chối ngay từ đầu), inactive (đã chấm dứt: rút lại theo Điều 10, hết thời hạn, hoặc bị thay thế). Các mã FHIR này không phải trạng thái do Luật quy định.

                                      ShortTrạng thái đồng ý
                                      Comments

                                      KHÔNG dùng rejected cho việc rút lại — rút lại sự đồng ý đang hiệu lực (Điều 10) chuyển bản ghi sang inactive; bản chép mới ghi nhận từ chối tiếp theo (nếu có) dùng active + rule nested deny.

                                      Must Supporttrue
                                      Obligations
                                        ObligationsActor
                                        SHALL:populate-if-knownNguồn tạo hồ sơ lâm sàng (Document Source)
                                        SHALL:no-error & SHALL:persistKho hồ sơ EMR (Repository)
                                        SHALL:no-error & SHALL:handleỨng dụng người dân (Citizen App)
                                        12. Consent.scope
                                        Definition

                                        Phạm vi đồng ý — mặc định patient-privacy cho DLCN y tế nhạy cảm.

                                        ShortPhạm vi đồng ý
                                        Must Supporttrue
                                        Obligations
                                          ObligationsActor
                                          SHALL:populate-if-knownNguồn tạo hồ sơ lâm sàng (Document Source)
                                          SHALL:no-error & SHALL:persistKho hồ sơ EMR (Repository)
                                          SHALL:no-error & SHALL:handleỨng dụng người dân (Citizen App)
                                          14. Consent.category
                                          Definition

                                          Phân loại chỉ thị đồng ý: quyền riêng tư, điều trị, nghiên cứu, đồng ý qua đại diện. Theo Luật 91/2025/QH15 Điều 9 (sự đồng ý), Điều 24 (đại diện theo pháp luật). Các trường hợp KHÔNG cần đồng ý (Điều 19) không phải loại đồng ý và không được ghi trên Consent — dùng VNCoreAuditEventLegalBasisDecision. / Consent directive category for privacy, treatment, research, or representation. Article 19 processing without consent is not a consent category and is recorded with VNCoreAuditEventLegalBasisDecision.

                                          ShortLoại đồng ý
                                          BindingUnless not suitable, these codes SHALL be taken from Loại đồng ý — VN Consent Category ValueSet
                                          (extensible to http://fhir.hl7.org.vn/core/ValueSet/vn-consent-category-vs)
                                          Must Supporttrue
                                          Obligations
                                            ObligationsActor
                                            SHALL:populate-if-knownNguồn tạo hồ sơ lâm sàng (Document Source)
                                            SHALL:no-error & SHALL:persistKho hồ sơ EMR (Repository)
                                            SHALL:no-error & SHALL:handleỨng dụng người dân (Citizen App)
                                            16. Consent.patient
                                            Definition

                                            Bệnh nhân — chủ thể dữ liệu cá nhân theo Luật 91/2025/QH15 Điều 2 khoản 5.

                                            ShortChủ thể dữ liệu
                                            Control1..?
                                            TypeReference(Bệnh nhân VN Core — VN Core Patient Profile)
                                            Must Supporttrue
                                            Obligations
                                              ObligationsActor
                                              SHALL:populate-if-knownNguồn tạo hồ sơ lâm sàng (Document Source)
                                              SHALL:no-error & SHALL:persistKho hồ sơ EMR (Repository)
                                              SHALL:no-error & SHALL:handleỨng dụng người dân (Citizen App)
                                              18. Consent.dateTime
                                              Definition

                                              Thời điểm ghi nhận sự đồng ý hoặc từ chối. Hình thức đồng ý phải rõ ràng, cụ thể, kiểm chứng được theo Luật 91/2025/QH15 Điều 9 khoản 3; riêng element này không đủ để chứng minh toàn bộ hiệu lực của sự đồng ý.

                                              ShortThời điểm đồng ý
                                              Control1..?
                                              Must Supporttrue
                                              Obligations
                                                ObligationsActor
                                                SHALL:populate-if-knownNguồn tạo hồ sơ lâm sàng (Document Source)
                                                SHALL:no-error & SHALL:persistKho hồ sơ EMR (Repository)
                                                SHALL:no-error & SHALL:handleỨng dụng người dân (Citizen App)
                                                20. Consent.performer
                                                Definition

                                                Người thực hiện đồng ý: bệnh nhân, hoặc người đại diện theo pháp luật đối với trẻ em/người bị mất hoặc hạn chế năng lực hành vi dân sự (Luật 91/2025/QH15 Điều 24 khoản 2). Trẻ em từ đủ 07 tuổi: công bố thông tin đời tư cần đồng ý của CẢ trẻ và người đại diện.

                                                ShortNgười đồng ý
                                                Comments

                                                Không ép 1..1 vì người thực hiện có thể được xác định qua bằng chứng đã lưu thay vì element này; ràng buộc thật nằm ở invariant vn-consent-choice-actor-identifiable — bản ghi có rule permit/deny phải có performer HOẶC source[x]/evidenceLocator xác định được người thực hiện lựa chọn.

                                                TypeReference(Bệnh nhân VN Core — VN Core Patient Profile, Người liên quan/người giám hộ VN Core — VN Core RelatedPerson Profile, Nhân viên y tế VN Core — VN Core Practitioner Profile)
                                                Must Supporttrue
                                                Must Support TypesNo must-support rules about the choice of types/profiles
                                                Obligations
                                                  ObligationsActor
                                                  SHALL:populate-if-knownNguồn tạo hồ sơ lâm sàng (Document Source)
                                                  SHALL:no-error & SHALL:persistKho hồ sơ EMR (Repository)
                                                  SHALL:no-error & SHALL:handleỨng dụng người dân (Citizen App)
                                                  22. Consent.organization
                                                  Definition

                                                  Cơ sở khám chữa bệnh quản lý bản ghi. Vai trò bên kiểm soát dữ liệu (Luật 91/2025/QH15 Điều 2 khoản 7), bên kiểm soát và xử lý dữ liệu (Điều 2 khoản 9), hoặc vai trò khác phải được xác định từ hoạt động thực tế; không được suy ra chỉ từ Reference này. Bên có nghĩa vụ tương ứng phải lưu trữ và chứng minh sự đồng ý theo NĐ 356/2025/NĐ-CP Điều 6 khoản 2.

                                                  ShortCSKCB quản lý đồng ý
                                                  TypeReference(Cơ sở y tế VN Core — VN Core Organization Profile)
                                                  Must Supporttrue
                                                  Obligations
                                                    ObligationsActor
                                                    SHALL:populate-if-knownNguồn tạo hồ sơ lâm sàng (Document Source)
                                                    SHALL:no-error & SHALL:persistKho hồ sơ EMR (Repository)
                                                    SHALL:no-error & SHALL:handleỨng dụng người dân (Citizen App)
                                                    24. Consent.source[x]
                                                    Definition

                                                    Tài liệu nguồn có thể là bản scan chữ ký, phiếu đồng ý điện tử, hoặc ghi nhận khác kiểm chứng được (5 phương thức theo NĐ 356/2025/NĐ-CP Điều 6 khoản 1 — xem vn-ext-consent-method). Bên kiểm soát phải lưu trữ sự đồng ý và chịu trách nhiệm chứng minh khi tranh chấp (Điều 6 khoản 2); bằng chứng có thể nằm trong hoặc ngoài FHIR, và source[x] không tự chứng minh hiệu lực. Im lặng/không phản hồi không được coi là đồng ý (Luật 91/2025/QH15 Điều 9 khoản 4 điểm d); cấm thiết lập mặc định đồng ý (NĐ 356/2025/NĐ-CP Điều 6 khoản 3).

                                                    ShortBản gốc đồng ý
                                                    [x] NoteSeeChoice of Data Typesfor further information about how to use [x]
                                                    Must Supporttrue
                                                    Obligations
                                                      ObligationsActor
                                                      SHALL:populate-if-knownNguồn tạo hồ sơ lâm sàng (Document Source)
                                                      SHALL:no-error & SHALL:persistKho hồ sơ EMR (Repository)
                                                      SHALL:no-error & SHALL:handleỨng dụng người dân (Citizen App)
                                                      Requirements

                                                      Bằng chứng đồng ý phải cho phép chứng minh nội dung Luật 91/2025/QH15 Điều 9 khoản 2 (loại dữ liệu/mục đích; bên kiểm soát/xử lý; quyền và nghĩa vụ của chủ thể) và thông báo riêng khi xử lý dữ liệu cá nhân nhạy cảm theo NĐ 356/2025/NĐ-CP Điều 6 khoản 4. Từ 0.10.0, các nội dung này có evidence contract có cấu trúc là vn-ext-consent-disclosure và được ép bằng invariant cho mọi bản ghi có rule permit. source[x] giữ vai trò trỏ tới BẢN GỐC đã lưu (Điều 6 khoản 2) — bắt buộc có source[x] hoặc evidenceLocator; bản thân source[x] không thay được nội dung đã thông báo, và nội dung đã thông báo không thay được bản gốc.

                                                      26. Consent.policy
                                                      Definition

                                                      Tham chiếu đến văn bản hoặc chính sách liên quan. Việc khai báo URI không tự xác lập căn cứ pháp lý hoặc chứng minh tuân thủ.

                                                      ShortCăn cứ pháp lý
                                                      Must Supporttrue
                                                      Obligations
                                                        ObligationsActor
                                                        SHALL:populate-if-knownNguồn tạo hồ sơ lâm sàng (Document Source)
                                                        SHALL:no-error & SHALL:persistKho hồ sơ EMR (Repository)
                                                        SHALL:no-error & SHALL:handleỨng dụng người dân (Citizen App)
                                                        28. Consent.policy.authority
                                                        ShortCơ quan ban hành
                                                        30. Consent.policy.uri
                                                        Definition

                                                        URL/URI văn bản pháp luật (VD: Luật 91/2025/QH15, NĐ 356/2025/NĐ-CP, TT 13/2025/TT-BYT).

                                                        ShortURL văn bản pháp lý
                                                        Must Supporttrue
                                                        32. Consent.provision
                                                        Definition

                                                        Quy tắc cho phép/từ chối xử lý dữ liệu theo mục đích, đối tượng, thời hạn cụ thể.

                                                        ShortQuy tắc đồng ý chi tiết
                                                        Must Supporttrue
                                                        Obligations
                                                          ObligationsActor
                                                          SHALL:populate-if-knownNguồn tạo hồ sơ lâm sàng (Document Source)
                                                          SHALL:no-error & SHALL:persistKho hồ sơ EMR (Repository)
                                                          SHALL:no-error & SHALL:handleỨng dụng người dân (Citizen App)
                                                          Requirements

                                                          Mỗi quy tắc triển khai phải truy vết được tới nội dung đồng ý đã cung cấp theo Luật 91/2025/QH15 Điều 9 khoản 2. Từ 0.10.0: mọi rule permit bắt buộc có purpose (vn-consent-permit-purpose-required), và nội dung đã thông báo — loại dữ liệu, bên kiểm soát và vai trò, quyền và nghĩa vụ của chủ thể, thông báo dữ liệu nhạy cảm — bắt buộc khai ở vn-ext-consent-disclosure cấp Consent.

                                                          34. Consent.provision.type
                                                          Comments

                                                          R4: type không được dùng ở root rule — root chỉ là khung; mọi rule permit/deny nằm ở provision.provision (vn-consent-provision-structure).

                                                          Control0..0
                                                          36. Consent.provision.period
                                                          Definition

                                                          Thời hạn đồng ý (nếu chủ thể ấn định). Chủ thể có quyền yêu cầu rút lại/hạn chế xử lý theo Luật 91/2025/QH15 Điều 10 (trừ trường hợp Điều 19 hoặc pháp luật quy định khác). Bằng chứng về thời hạn và việc rút lại phải được quản lý theo quy trình áp dụng; Luật không bắt buộc một representation FHIR cụ thể.

                                                          ShortThời hạn hiệu lực
                                                          Comments

                                                          KHÔNG bắt buộc period.end: sự đồng ý vô thời hạn là hợp pháp — có hiệu lực cho đến khi chủ thể thay đổi (Luật 91/2025/QH15 Điều 9 khoản 4 điểm c). Invariant vn-consent-period-end-required (≤0.7.0) đã gỡ vì mâu thuẫn điều khoản này.

                                                          Must Supporttrue
                                                          38. Consent.provision.actor
                                                          Definition

                                                          Bên được phép/từ chối xử lý: CSKCB, BHXH, cơ quan y tế dự phòng, người đại diện, v.v. LƯU Ý Điều 26 khoản 2 Luật 91/2025/QH15: cấm cung cấp DLCN cho bên thứ ba là tổ chức CSSK/bảo hiểm khác trừ khi chủ thể yêu cầu bằng văn bản hoặc thuộc Điều 19 khoản 1 — mô hình mặc định là deny với bên thứ ba.

                                                          ShortBên liên quan
                                                          40. Consent.provision.purpose
                                                          Definition

                                                          Mục đích cụ thể: khám chữa bệnh, BHYT, y tế công cộng, nghiên cứu, bệnh án điện tử, chia sẻ hồ sơ. Sự đồng ý thể hiện theo TỪNG mục đích — Luật 91/2025/QH15 Điều 9 khoản 4 điểm a; không được kèm điều kiện ép đồng ý mục đích khác (điểm b).

                                                          ShortMục đích xử lý
                                                          BindingUnless not suitable, these codes SHALL be taken from Mục đích xử lý dữ liệu y tế — VN Consent Purpose ValueSet
                                                          (extensible to http://fhir.hl7.org.vn/core/ValueSet/vn-consent-purpose-vs)
                                                          Must Supporttrue
                                                          42. Consent.provision.class
                                                          Definition

                                                          Loại resource FHIR được phép/từ chối: Condition, Observation, Claim, v.v.

                                                          ShortLoại dữ liệu
                                                          44. Consent.provision.provision
                                                          ShortCác rule permit/deny
                                                          TypeBackboneElement
                                                          Must Supporttrue
                                                          46. Consent.provision.provision.type
                                                          Definition

                                                          permit = cho phép xử lý, deny = từ chối xử lý. Quyền đồng ý/không đồng ý/rút lại theo Luật 91/2025/QH15 Điều 4 khoản 1 điểm b; với thông tin sức khoẻ, đồng ý là bắt buộc trừ Điều 19 khoản 1 (Điều 26 khoản 1 điểm a). Từ chối đang hiệu lực = status active + rule deny (nested).

                                                          ShortCho phép / Từ chối
                                                          Control1..?
                                                          Must Supporttrue
                                                          48. Consent.provision.provision.actor
                                                          SlicingThis element introduces a set of slices on Consent.provision.provision.actor. The slices areUnordered and Open, and can be differentiated using the following discriminators:
                                                          • exists @ extension('http://fhir.hl7.org.vn/core/StructureDefinition/vn-ext-representation-authority')
                                                          • 50. Consent.provision.provision.actor:representative
                                                            Slice Namerepresentative
                                                            Definition

                                                            Actor là người đại diện theo pháp luật/giám hộ/được uỷ quyền (Luật 91/2025/QH15 Điều 24 khoản 2). Profile yêu cầu extension vn-ext-representation-authority ngay tại actor này để hệ thống triển khai có thể kiểm tra type/source/verifiedDate/period và áp dụng rule permit/deny. Đây là mô hình kỹ thuật của IG, không thay thế việc xác minh thẩm quyền thực tế hoặc tự tạo hiệu lực pháp lý. Hạn chế lớp dữ liệu được biểu diễn bằng rule type=deny + securityLabel (vn-data-sensitivity-class-vs), thay cho sub-extension restrictedSensitivity đã xoá ở 0.8.0.

                                                            ShortNgười đại diện/giám hộ — mang token thẩm quyền
                                                            Control0..*
                                                            Must Supporttrue
                                                            52. Consent.provision.provision.actor:representative.extension
                                                            Control1..?
                                                            SlicingThis element introduces a set of slices on Consent.provision.provision.actor.extension. The slices areUnordered and Open, and can be differentiated using the following discriminators:
                                                            • value @ url
                                                            • 54. Consent.provision.provision.actor:representative.extension:representationAuthority
                                                              Slice NamerepresentationAuthority
                                                              Control1..1
                                                              TypeExtension(Thẩm quyền đại diện truy cập dữ liệu — Representation Authority Extension) (Complex Extension)
                                                              Must Supporttrue
                                                              56. Consent.provision.provision.actor:representative.reference
                                                              TypeReference(Người liên quan/người giám hộ VN Core — VN Core RelatedPerson Profile)
                                                              58. Consent.provision.provision.securityLabel
                                                              Definition

                                                              Lớp nhạy cảm dữ liệu (vn-data-sensitivity-class-vs) mà rule áp dụng. Mô hình hạn chế theo lớp: permit theo lớp cơ bản + provision con type=deny với securityLabel lớp bị hạn chế (vd special-protection với người đại diện của vị thành niên — thay sub-extension restrictedSensitivity đã xoá 0.8.0). PDP deny-by-default: không có provision permit phủ lớp dữ liệu → từ chối.

                                                              ShortLớp nhạy cảm dữ liệu áp cho rule
                                                              BindingUnless not suitable, these codes SHALL be taken from Lớp nhạy cảm dữ liệu y tế — Vietnam Health Data Sensitivity Class ValueSet
                                                              (extensible to http://fhir.hl7.org.vn/core/ValueSet/vn-data-sensitivity-class-vs)
                                                              Must Supporttrue
                                                              60. Consent.provision.provision.purpose
                                                              Definition

                                                              Bắt buộc với rule permit (vn-consent-permit-purpose-required): sự đồng ý phải nêu mục đích xử lý và được thể hiện theo TỪNG mục đích — Luật 91/2025/QH15 Điều 9 khoản 2 điểm a và khoản 4 điểm a. Rule deny không bắt buộc purpose vì từ chối toàn phần là hợp lệ.

                                                              ShortMục đích xử lý của rule này
                                                              BindingUnless not suitable, these codes SHALL be taken from Mục đích xử lý dữ liệu y tế — VN Consent Purpose ValueSet
                                                              (extensible to http://fhir.hl7.org.vn/core/ValueSet/vn-consent-purpose-vs)

                                                              Guidance on how to interpret the contents of this table can be foundhere

                                                              0. Consent
                                                              Definition

                                                              A record of a healthcare consumer’s choices, which permits or denies identified recipient(s) or recipient role(s) to perform one or more actions within a given policy context, for specific purposes and periods of time.

                                                              ShortA healthcare consumer's choices to permit or deny recipients or roles to perform actions for specific purposes and periods of time
                                                              Comments

                                                              Broadly, there are 3 key areas of consent for patients: Consent around sharing information (aka Privacy Consent Directive - Authorization to Collect, Use, or Disclose information), consent for specific treatment, or kinds of treatment, and general advance care directives.

                                                              Control0..*
                                                              Is Modifierfalse
                                                              Summaryfalse
                                                              Invariantsdom-2: If the resource is contained in another resource, it SHALL NOT contain nested Resources (contained.contained.empty())
                                                              dom-3: If the resource is contained in another resource, it SHALL be referred to from elsewhere in the resource or SHALL refer to the containing resource (contained.where((('#'+id in (%resource.descendants().reference | %resource.descendants().as(canonical) | %resource.descendants().as(uri) | %resource.descendants().as(url))) or descendants().where(reference = '#').exists() or descendants().where(as(canonical) = '#').exists() or descendants().where(as(canonical) = '#').exists()).not()).trace('unmatched', id).empty())
                                                              dom-4: If a resource is contained in another resource, it SHALL NOT have a meta.versionId or a meta.lastUpdated (contained.meta.versionId.empty() and contained.meta.lastUpdated.empty())
                                                              dom-5: If a resource is contained in another resource, it SHALL NOT have a security label (contained.meta.security.empty())
                                                              dom-6: A resource should have narrative for robust management (text.`div`.exists())
                                                              ppc-1: Either a Policy or PolicyRule (policy.exists() or policyRule.exists())
                                                              ppc-2: IF Scope=privacy, there must be a patient (patient.exists() or scope.coding.where(system='something' and code='patient-privacy').exists().not())
                                                              ppc-3: IF Scope=research, there must be a patient (patient.exists() or scope.coding.where(system='something' and code='research').exists().not())
                                                              ppc-4: IF Scope=adr, there must be a patient (patient.exists() or scope.coding.where(system='something' and code='adr').exists().not())
                                                              ppc-5: IF Scope=treatment, there must be a patient (patient.exists() or scope.coding.where(system='something' and code='treatment').exists().not())
                                                              vn-consent-rejected-not-permit: Bản ghi status=rejected (từ chối ngay từ đầu) không được chứa rule permit ở BẤT KỲ độ sâu nested nào — cho phép đang hiệu lực phải dùng status=active ((status = 'rejected') implies provision.repeat(provision).type.where($this = 'permit').empty())
                                                              vn-consent-provision-structure: Theo R4: root rule (Consent.provision) KHÔNG mang type; mọi rule permit/deny khai ở nested (provision.provision[*]) và bắt buộc có type (provision.exists() implies (provision.type.empty() and provision.provision.exists() and provision.repeat(provision).all(type.exists())))
                                                              vn-consent-no-processing-legal-basis: VNCoreConsent 0.9 chỉ biểu diễn lựa chọn của chủ thể và không được mang vn-ext-processing-legal-basis; xử lý không qua đồng ý dùng VNCoreAuditEventLegalBasisDecision / VNCoreConsent 0.9 represents data-subject choices only and SHALL NOT carry vn-ext-processing-legal-basis; processing without consent uses VNCoreAuditEventLegalBasisDecision (extension.where(url = 'http://fhir.hl7.org.vn/core/StructureDefinition/vn-ext-processing-legal-basis').empty())
                                                              vn-consent-permit-requires-disclosure: Bản ghi có rule permit phải mang nội dung đã thông báo (vn-ext-consent-disclosure) và phương thức thể hiện đồng ý (vn-ext-consent-method) — Luật 91/2025/QH15 Điều 9 khoản 2 và khoản 3; NĐ 356/2025/NĐ-CP Điều 6 khoản 1. A consent granting any permit rule SHALL carry the disclosure evidence and the declared consent method. (provision.repeat(provision).type.where($this = 'permit').exists() implies (extension.where(url = 'http://fhir.hl7.org.vn/core/StructureDefinition/vn-ext-consent-disclosure').exists() and extension.where(url = 'http://fhir.hl7.org.vn/core/StructureDefinition/vn-ext-consent-method').exists()))
                                                              vn-consent-permit-evidence-retained: Bản ghi có rule permit phải trỏ tới bằng chứng đồng ý đã lưu: source[x] trong FHIR hoặc evidenceLocator ngoài FHIR — NĐ 356/2025/NĐ-CP Điều 6 khoản 2 (bên kiểm soát lưu trữ sự đồng ý và chịu trách nhiệm chứng minh khi tranh chấp). Retained consent evidence SHALL be locatable. (provision.repeat(provision).type.where($this = 'permit').exists() implies (source.exists() or extension.where(url = 'http://fhir.hl7.org.vn/core/StructureDefinition/vn-ext-consent-disclosure').extension.where(url = 'evidenceLocator').exists()))
                                                              vn-consent-choice-actor-identifiable: Bản ghi có rule permit/deny phải xác định được NGƯỜI thực hiện lựa chọn: performer, hoặc bằng chứng trỏ được tới người đó (source[x] trong FHIR / evidenceLocator ngoài FHIR) — Luật 91/2025/QH15 Điều 9 khoản 3 (sự đồng ý phải kiểm chứng được), Điều 4 khoản 1 điểm b (quyền không đồng ý), Điều 24 (đại diện). A subject-choice record SHALL identify who made the choice via performer or locatable evidence. (provision.repeat(provision).type.exists() implies (performer.where(reference.exists() or identifier.exists()).exists() or source.exists() or extension.where(url = 'http://fhir.hl7.org.vn/core/StructureDefinition/vn-ext-consent-disclosure').extension.where(url = 'evidenceLocator').exists()))
                                                              vn-consent-permit-purpose-required: Mỗi rule permit phải nêu mục đích xử lý — Luật 91/2025/QH15 Điều 9 khoản 2 điểm a (mục đích xử lý là nội dung phải thông báo) và khoản 4 điểm a (đồng ý theo TỪNG mục đích). Every permit rule SHALL state its processing purpose. (provision.repeat(provision).where(type = 'permit').all(purpose.exists()))
                                                              vn-consent-disclosed-controller-role: Vai trò được thông báo cho chủ thể chỉ có thể là bên kiểm soát hoặc bên kiểm soát và xử lý — Luật 91/2025/QH15 Điều 9 khoản 2 điểm b. Bên xử lý và bên thứ ba không phải chủ thể của nghĩa vụ thông báo này. The disclosed party role SHALL be controller or controller-processor. (extension.where(url = 'http://fhir.hl7.org.vn/core/StructureDefinition/vn-ext-consent-disclosure').extension.where(url = 'controllerRole').value.ofType(Coding).code.all($this in ('controller' | 'controller-processor')))
                                                              vn-consent-rights-notice-versioned: Bản thông báo quyền và nghĩa vụ phải xác định được ĐÚNG bản đã trình: dùng DocumentReference, hoặc URL có ghim phiên bản. The rights notice SHALL be identifiable as the exact version presented. (extension.where(url = 'http://fhir.hl7.org.vn/core/StructureDefinition/vn-ext-consent-disclosure').extension.where(url = 'rightsNotice').all(value.ofType(Reference).exists() or value.ofType(url).matches('/v[0-9]')))
                                                              vn-consent-sensitive-notice-required: Nếu nội dung đã thông báo có loại dữ liệu thuộc danh mục nhạy cảm (NĐ 356/2025/NĐ-CP Điều 4 khoản 1) thì phải khai đã thông báo cho chủ thể rằng dữ liệu cần xử lý là dữ liệu cá nhân nhạy cảm — NĐ 356/2025/NĐ-CP Điều 6 khoản 4. Disclosing a sensitive-category data type SHALL come with the explicit sensitive-data notice. (extension.where(url = 'http://fhir.hl7.org.vn/core/StructureDefinition/vn-ext-consent-disclosure').extension.where(url = 'dataCategory').value.ofType(CodeableConcept).coding.where(system = 'http://fhir.hl7.org.vn/core/CodeSystem/vn-sensitive-personal-data-cs').exists() implies extension.where(url = 'http://fhir.hl7.org.vn/core/StructureDefinition/vn-ext-consent-disclosure').extension.where(url = 'sensitiveDataNotice').value.ofType(boolean) = true)
                                                              vn-consent-disclosure-before-consent: Thời điểm trình nội dung thông báo không được sau thời điểm đồng ý — sự đồng ý chỉ có hiệu lực khi chủ thể ĐÃ biết rõ các thông tin đó (Luật 91/2025/QH15 Điều 9 khoản 2). Disclosure SHALL NOT be timestamped after the consent itself. (extension.where(url = 'http://fhir.hl7.org.vn/core/StructureDefinition/vn-ext-consent-disclosure').extension.where(url = 'disclosedAt').value.ofType(dateTime).all($this <= %resource.dateTime))
                                                              2. Consent.id
                                                              Definition

                                                              The logical id of the resource, as used in the URL for the resource. Once assigned, this value never changes.

                                                              ShortLogical id of this artifact
                                                              Comments

                                                              The only time that a resource does not have an id is when it is being submitted to the server using a create operation.

                                                              Control0..1
                                                              Typeid
                                                              Is Modifierfalse
                                                              Summarytrue
                                                              4. Consent.meta
                                                              Definition

                                                              The metadata about the resource. This is content that is maintained by the infrastructure. Changes to the content might not always be associated with version changes to the resource.

                                                              ShortMetadata about the resource
                                                              Control0..1
                                                              TypeMeta
                                                              Is Modifierfalse
                                                              Summarytrue
                                                              Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                              6. Consent.implicitRules
                                                              Definition

                                                              A reference to a set of rules that were followed when the resource was constructed, and which must be understood when processing the content. Often, this is a reference to an implementation guide that defines the special rules along with other profiles etc.

                                                              ShortA set of rules under which this content was created
                                                              Comments

                                                              Asserting this rule set restricts the content to be only understood by a limited set of trading partners. This inherently limits the usefulness of the data in the long term. However, the existing health eco-system is highly fractured, and not yet ready to define, collect, and exchange data in a generally computable sense. Wherever possible, implementers and/or specification writers should avoid using this element. Often, when used, the URL is a reference to an implementation guide that defines these special rules as part of it's narrative along with other profiles, value sets, etc.

                                                              Control0..1
                                                              Typeuri
                                                              Is Modifiertrue because This element is labeled as a modifier because the implicit rules may provide additional knowledge about the resource that modifies it's meaning or interpretation
                                                              Primitive ValueThis primitive element may be present, or absent, or replaced by an extension
                                                              Summarytrue
                                                              Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                              8. Consent.language
                                                              Definition

                                                              The base language in which the resource is written.

                                                              ShortLanguage of the resource content
                                                              Comments

                                                              Language is provided to support indexing and accessibility (typically, services such as text to speech use the language tag). The html language tag in the narrative applies to the narrative. The language tag on the resource may be used to specify the language of other presentations generated from the data in the resource. Not all the content has to be in the base language. The Resource.language should not be assumed to apply to the narrative automatically. If a language is specified, it should it also be specified on the div element in the html (see rules in HTML5 for information about the relationship between xml:lang and the html lang attribute).

                                                              Control0..1
                                                              BindingThe codes SHOULD be taken from CommonLanguages
                                                              (preferred to http://hl7.org/fhir/ValueSet/languages|4.0.1)

                                                              A human language.

                                                              Additional BindingsPurpose
                                                              AllLanguagesMax Binding
                                                              Typecode
                                                              Is Modifierfalse
                                                              Primitive ValueThis primitive element may be present, or absent, or replaced by an extension
                                                              Summaryfalse
                                                              Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                              10. Consent.text
                                                              Definition

                                                              A human-readable narrative that contains a summary of the resource and can be used to represent the content of the resource to a human. The narrative need not encode all the structured data, but is required to contain sufficient detail to make it "clinically safe" for a human to just read the narrative. Resource definitions may define what content should be represented in the narrative to ensure clinical safety.

                                                              ShortText summary of the resource, for human interpretation
                                                              Comments

                                                              Contained resources do not have narrative. Resources that are not contained SHOULD have a narrative. In some cases, a resource may only have text with little or no additional discrete data (as long as all minOccurs=1 elements are satisfied). This may be necessary for data from legacy systems where information is captured as a "text blob" or where text is additionally entered raw or narrated and encoded information is added later.

                                                              Control0..1
                                                              TypeNarrative
                                                              Is Modifierfalse
                                                              Summaryfalse
                                                              Alternate Namesnarrative, html, xhtml, display
                                                              Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                              12. Consent.contained
                                                              Definition

                                                              These resources do not have an independent existence apart from the resource that contains them - they cannot be identified independently, and nor can they have their own independent transaction scope.

                                                              ShortContained, inline Resources
                                                              Comments

                                                              This should never be done when the content can be identified properly, as once identification is lost, it is extremely difficult (and context dependent) to restore it again. Contained resources may have profiles and tags In their meta elements, but SHALL NOT have security labels.

                                                              Control0..*
                                                              TypeResource
                                                              Is Modifierfalse
                                                              Summaryfalse
                                                              Alternate Namesinline resources, anonymous resources, contained resources
                                                              14. Consent.extension
                                                              Definition

                                                              An Extension

                                                              ShortExtension
                                                              Control0..*
                                                              TypeExtension
                                                              Is Modifierfalse
                                                              Summaryfalse
                                                              Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                              ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
                                                              SlicingThis element introduces a set of slices on Consent.extension. The slices areUnordered and Open, and can be differentiated using the following discriminators:
                                                              • value @ url
                                                              • 16. Consent.extension:processingLegalBasis
                                                                Slice NameprocessingLegalBasis
                                                                Definition

                                                                Consent chỉ biểu diễn lựa chọn của chủ thể (đồng ý, từ chối, rút lại hoặc giới hạn). Xử lý không cần đồng ý theo Luật 91/2025/QH15 Điều 19 khoản 1 dùng VNCoreAuditEventLegalBasisDecision. Context Consent của extension chỉ được giữ trong dòng 0.9 để consumer đọc dữ liệu legacy 0.8 và dự kiến gỡ ở 1.0. / Consent represents only the data subject's choice. Processing without consent under Article 19(1) uses VNCoreAuditEventLegalBasisDecision. The Consent context remains for legacy 0.8 reads during 0.9 and is planned for removal in 1.0.

                                                                ShortCấm authoring căn cứ Điều 19 trên Consent / No Article 19 authoring on Consent
                                                                Control0..0
                                                                This element is affected by the following invariants: ele-1
                                                                TypeExtension(Căn cứ xử lý không cần đồng ý — Processing Legal Basis Extension) (Extension Type: CodeableConcept)
                                                                Is Modifierfalse
                                                                Summaryfalse
                                                                Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
                                                                18. Consent.extension:consentMethod
                                                                Slice NameconsentMethod
                                                                Definition

                                                                Phương thức (cách thức) chủ thể dữ liệu cá nhân thể hiện sự đồng ý xử lý DLCN. Căn cứ: NĐ 356/2025/NĐ-CP Điều 6 khoản 1 — nhóm các phương thức thể hiện sự đồng ý tại các điểm a/b/c/d/đ. Mỗi phương thức phải bảo đảm khả năng kiểm chứng (verifiable) về xác định chủ thể, thời điểm, và nội dung đồng ý. Đặt extension này trên Consent hoặc Consent.provision để ghi phương thức mà hệ thống tuyên bố đã sử dụng. Extension hỗ trợ truy vết nhưng không tự chứng minh sự đồng ý hợp lệ, khả năng kiểm chứng hay tuân thủ NĐ 356/2025/NĐ-CP. Required binding giữ một taxonomy ổn định cho IG; other-verifiable chỉ dùng khi phương thức khác vẫn đáp ứng yêu cầu kiểm chứng và phải được mô tả trong hợp đồng/chứng cứ triển khai.

                                                                ShortPhương thức chủ thể dữ liệu thể hiện sự đồng ý
                                                                Control0..1
                                                                This element is affected by the following invariants: ele-1
                                                                TypeExtension(Phương thức thể hiện đồng ý — VN Consent Method) (Extension Type: CodeableConcept)
                                                                Is Modifierfalse
                                                                Must Supporttrue
                                                                Obligations
                                                                  ObligationsActor
                                                                  SHALL:populate-if-knownNguồn tạo hồ sơ lâm sàng (Document Source)
                                                                  SHALL:no-error & SHALL:persistKho hồ sơ EMR (Repository)
                                                                  SHALL:no-error & SHALL:handleỨng dụng người dân (Citizen App)
                                                                  Summaryfalse
                                                                  Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                  ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
                                                                  20. Consent.extension:consentDisclosure
                                                                  Slice NameconsentDisclosure
                                                                  Definition

                                                                  Bắt buộc khi bản ghi có rule permit (invariant vn-consent-permit-requires-disclosure): loại dữ liệu, bên kiểm soát và vai trò, bản thông báo quyền và nghĩa vụ, và thông báo dữ liệu nhạy cảm. Xem vn-ext-consent-disclosure.

                                                                  ShortNội dung đã thông báo cho chủ thể khi xin đồng ý
                                                                  Control0..1
                                                                  This element is affected by the following invariants: ele-1
                                                                  TypeExtension(Nội dung đã thông báo khi xin đồng ý — Consent Disclosure Evidence Extension) (Complex Extension)
                                                                  Is Modifierfalse
                                                                  Must Supporttrue
                                                                  Obligations
                                                                    ObligationsActor
                                                                    SHALL:populate-if-knownNguồn tạo hồ sơ lâm sàng (Document Source)
                                                                    SHALL:no-error & SHALL:persistKho hồ sơ EMR (Repository)
                                                                    SHALL:no-error & SHALL:handleỨng dụng người dân (Citizen App)
                                                                    Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                    ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
                                                                    22. Consent.modifierExtension
                                                                    Definition

                                                                    May be used to represent additional information that is not part of the basic definition of the resource and that modifies the understanding of the element that contains it and/or the understanding of the containing element's descendants. Usually modifier elements provide negation or qualification. To make the use of extensions safe and manageable, there is a strict set of governance applied to the definition and use of extensions. Though any implementer is allowed to define an extension, there is a set of requirements that SHALL be met as part of the definition of the extension. Applications processing a resource are required to check for modifier extensions.

                                                                    Modifier extensions SHALL NOT change the meaning of any elements on Resource or DomainResource (including cannot change the meaning of modifierExtension itself).

                                                                    ShortExtensions that cannot be ignored
                                                                    Comments

                                                                    There can be no stigma associated with the use of extensions by any application, project, or standard - regardless of the institution or jurisdiction that uses or defines the extensions. The use of extensions is what allows the FHIR specification to retain a core level of simplicity for everyone.

                                                                    Control0..*
                                                                    TypeExtension
                                                                    Is Modifiertrue because Modifier extensions are expected to modify the meaning or interpretation of the resource that contains them
                                                                    Summaryfalse
                                                                    Requirements

                                                                    Modifier extensions allow for extensions that cannot be safely ignored to be clearly distinguished from the vast majority of extensions which can be safely ignored. This promotes interoperability by eliminating the need for implementers to prohibit the presence of extensions. For further information, see the definition of modifier extensions.

                                                                    Alternate Namesextensions, user content
                                                                    Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                    ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
                                                                    24. Consent.identifier
                                                                    Definition

                                                                    Unique identifier for this copy of the Consent Statement.

                                                                    ShortIdentifier for this record (external references)
                                                                    Comments

                                                                    This identifier identifies this copy of the consent. Where this identifier is also used elsewhere as the identifier for a consent record (e.g. a CDA consent document) then the consent details are expected to be the same.

                                                                    NoteThis is a business identifier, not a resource identifier (see discussion)
                                                                    Control0..*
                                                                    TypeIdentifier
                                                                    Is Modifierfalse
                                                                    Summarytrue
                                                                    ExampleGeneral: { "system" : "http://acme.org/identifier/local/eCMS", "value" : "Local eCMS identifier" }
                                                                    Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                    26. Consent.status
                                                                    Definition

                                                                    Ánh xạ kỹ thuật của profile từ các quyền tại Luật 91/2025/QH15: active (bản ghi đang hiệu lực — kể cả từ chối chủ động qua rule nested provision.provision.type=deny), rejected (đề nghị đồng ý bị từ chối ngay từ đầu), inactive (đã chấm dứt: rút lại theo Điều 10, hết thời hạn, hoặc bị thay thế). Các mã FHIR này không phải trạng thái do Luật quy định.

                                                                    ShortTrạng thái đồng ý
                                                                    Comments

                                                                    KHÔNG dùng rejected cho việc rút lại — rút lại sự đồng ý đang hiệu lực (Điều 10) chuyển bản ghi sang inactive; bản chép mới ghi nhận từ chối tiếp theo (nếu có) dùng active + rule nested deny.

                                                                    Control1..1
                                                                    BindingThe codes SHALL be taken from ConsentState
                                                                    (required to http://hl7.org/fhir/ValueSet/consent-state-codes|4.0.1)

                                                                    Indicates the state of the consent.

                                                                    Typecode
                                                                    Is Modifiertrue because This element is labelled as a modifier because it is a status element that contains status entered-in-error which means that the resource should not be treated as valid
                                                                    Primitive ValueThis primitive element may be present, or absent, or replaced by an extension
                                                                    Must Supporttrue
                                                                    Obligations
                                                                      ObligationsActor
                                                                      SHALL:populate-if-knownNguồn tạo hồ sơ lâm sàng (Document Source)
                                                                      SHALL:no-error & SHALL:persistKho hồ sơ EMR (Repository)
                                                                      SHALL:no-error & SHALL:handleỨng dụng người dân (Citizen App)
                                                                      Summarytrue
                                                                      Requirements

                                                                      The Consent Directive that is pointed to might be in various lifecycle states, e.g., a revoked Consent Directive.

                                                                      Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                      28. Consent.scope
                                                                      Definition

                                                                      Phạm vi đồng ý — mặc định patient-privacy cho DLCN y tế nhạy cảm.

                                                                      ShortPhạm vi đồng ý
                                                                      Control1..1
                                                                      BindingUnless not suitable, these codes SHALL be taken from ConsentScopeCodes
                                                                      (extensible to http://hl7.org/fhir/ValueSet/consent-scope|4.0.1)

                                                                      The four anticipated uses for the Consent Resource.

                                                                      TypeCodeableConcept
                                                                      Is Modifiertrue because Allows changes to codes based on scope selection
                                                                      Must Supporttrue
                                                                      Obligations
                                                                        ObligationsActor
                                                                        SHALL:populate-if-knownNguồn tạo hồ sơ lâm sàng (Document Source)
                                                                        SHALL:no-error & SHALL:persistKho hồ sơ EMR (Repository)
                                                                        SHALL:no-error & SHALL:handleỨng dụng người dân (Citizen App)
                                                                        Summarytrue
                                                                        Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                        30. Consent.category
                                                                        Definition

                                                                        Phân loại chỉ thị đồng ý: quyền riêng tư, điều trị, nghiên cứu, đồng ý qua đại diện. Theo Luật 91/2025/QH15 Điều 9 (sự đồng ý), Điều 24 (đại diện theo pháp luật). Các trường hợp KHÔNG cần đồng ý (Điều 19) không phải loại đồng ý và không được ghi trên Consent — dùng VNCoreAuditEventLegalBasisDecision. / Consent directive category for privacy, treatment, research, or representation. Article 19 processing without consent is not a consent category and is recorded with VNCoreAuditEventLegalBasisDecision.

                                                                        ShortLoại đồng ý
                                                                        Control1..*
                                                                        BindingUnless not suitable, these codes SHALL be taken from Loại đồng ý — VN Consent Category ValueSet
                                                                        (extensible to http://fhir.hl7.org.vn/core/ValueSet/vn-consent-category-vs)
                                                                        TypeCodeableConcept
                                                                        Is Modifierfalse
                                                                        Must Supporttrue
                                                                        Obligations
                                                                          ObligationsActor
                                                                          SHALL:populate-if-knownNguồn tạo hồ sơ lâm sàng (Document Source)
                                                                          SHALL:no-error & SHALL:persistKho hồ sơ EMR (Repository)
                                                                          SHALL:no-error & SHALL:handleỨng dụng người dân (Citizen App)
                                                                          Summarytrue
                                                                          Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                          32. Consent.patient
                                                                          Definition

                                                                          Bệnh nhân — chủ thể dữ liệu cá nhân theo Luật 91/2025/QH15 Điều 2 khoản 5.

                                                                          ShortChủ thể dữ liệu
                                                                          Comments

                                                                          Commonly, the patient the consent pertains to is the author, but for young and old people, it may be some other person.

                                                                          Control1..1
                                                                          TypeReference(Bệnh nhân VN Core — VN Core Patient Profile)
                                                                          Is Modifierfalse
                                                                          Must Supporttrue
                                                                          Obligations
                                                                            ObligationsActor
                                                                            SHALL:populate-if-knownNguồn tạo hồ sơ lâm sàng (Document Source)
                                                                            SHALL:no-error & SHALL:persistKho hồ sơ EMR (Repository)
                                                                            SHALL:no-error & SHALL:handleỨng dụng người dân (Citizen App)
                                                                            Summarytrue
                                                                            Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                            34. Consent.dateTime
                                                                            Definition

                                                                            Thời điểm ghi nhận sự đồng ý hoặc từ chối. Hình thức đồng ý phải rõ ràng, cụ thể, kiểm chứng được theo Luật 91/2025/QH15 Điều 9 khoản 3; riêng element này không đủ để chứng minh toàn bộ hiệu lực của sự đồng ý.

                                                                            ShortThời điểm đồng ý
                                                                            Comments

                                                                            This is not the time of the original consent, but the time that this statement was made or derived.

                                                                            Control1..1
                                                                            TypedateTime
                                                                            Is Modifierfalse
                                                                            Primitive ValueThis primitive element may be present, or absent, or replaced by an extension
                                                                            Must Supporttrue
                                                                            Obligations
                                                                              ObligationsActor
                                                                              SHALL:populate-if-knownNguồn tạo hồ sơ lâm sàng (Document Source)
                                                                              SHALL:no-error & SHALL:persistKho hồ sơ EMR (Repository)
                                                                              SHALL:no-error & SHALL:handleỨng dụng người dân (Citizen App)
                                                                              Summarytrue
                                                                              Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                              36. Consent.performer
                                                                              Definition

                                                                              Người thực hiện đồng ý: bệnh nhân, hoặc người đại diện theo pháp luật đối với trẻ em/người bị mất hoặc hạn chế năng lực hành vi dân sự (Luật 91/2025/QH15 Điều 24 khoản 2). Trẻ em từ đủ 07 tuổi: công bố thông tin đời tư cần đồng ý của CẢ trẻ và người đại diện.

                                                                              ShortNgười đồng ý
                                                                              Comments

                                                                              Không ép 1..1 vì người thực hiện có thể được xác định qua bằng chứng đã lưu thay vì element này; ràng buộc thật nằm ở invariant vn-consent-choice-actor-identifiable — bản ghi có rule permit/deny phải có performer HOẶC source[x]/evidenceLocator xác định được người thực hiện lựa chọn.

                                                                              Control0..*
                                                                              TypeReference(Bệnh nhân VN Core — VN Core Patient Profile, Người liên quan/người giám hộ VN Core — VN Core RelatedPerson Profile, Nhân viên y tế VN Core — VN Core Practitioner Profile)
                                                                              Is Modifierfalse
                                                                              Must Supporttrue
                                                                              Must Support TypesNo must-support rules about the choice of types/profiles
                                                                              Obligations
                                                                                ObligationsActor
                                                                                SHALL:populate-if-knownNguồn tạo hồ sơ lâm sàng (Document Source)
                                                                                SHALL:no-error & SHALL:persistKho hồ sơ EMR (Repository)
                                                                                SHALL:no-error & SHALL:handleỨng dụng người dân (Citizen App)
                                                                                Summarytrue
                                                                                Alternate Namesconsentor
                                                                                Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                38. Consent.organization
                                                                                Definition

                                                                                Cơ sở khám chữa bệnh quản lý bản ghi. Vai trò bên kiểm soát dữ liệu (Luật 91/2025/QH15 Điều 2 khoản 7), bên kiểm soát và xử lý dữ liệu (Điều 2 khoản 9), hoặc vai trò khác phải được xác định từ hoạt động thực tế; không được suy ra chỉ từ Reference này. Bên có nghĩa vụ tương ứng phải lưu trữ và chứng minh sự đồng ý theo NĐ 356/2025/NĐ-CP Điều 6 khoản 2.

                                                                                ShortCSKCB quản lý đồng ý
                                                                                Control0..*
                                                                                TypeReference(Cơ sở y tế VN Core — VN Core Organization Profile)
                                                                                Is Modifierfalse
                                                                                Must Supporttrue
                                                                                Obligations
                                                                                  ObligationsActor
                                                                                  SHALL:populate-if-knownNguồn tạo hồ sơ lâm sàng (Document Source)
                                                                                  SHALL:no-error & SHALL:persistKho hồ sơ EMR (Repository)
                                                                                  SHALL:no-error & SHALL:handleỨng dụng người dân (Citizen App)
                                                                                  Summarytrue
                                                                                  Alternate Namescustodian
                                                                                  Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                  40. Consent.source[x]
                                                                                  Definition

                                                                                  Tài liệu nguồn có thể là bản scan chữ ký, phiếu đồng ý điện tử, hoặc ghi nhận khác kiểm chứng được (5 phương thức theo NĐ 356/2025/NĐ-CP Điều 6 khoản 1 — xem vn-ext-consent-method). Bên kiểm soát phải lưu trữ sự đồng ý và chịu trách nhiệm chứng minh khi tranh chấp (Điều 6 khoản 2); bằng chứng có thể nằm trong hoặc ngoài FHIR, và source[x] không tự chứng minh hiệu lực. Im lặng/không phản hồi không được coi là đồng ý (Luật 91/2025/QH15 Điều 9 khoản 4 điểm d); cấm thiết lập mặc định đồng ý (NĐ 356/2025/NĐ-CP Điều 6 khoản 3).

                                                                                  ShortBản gốc đồng ý
                                                                                  Comments

                                                                                  The source can be contained inline (Attachment), referenced directly (Consent), referenced in a consent repository (DocumentReference), or simply by an identifier (Identifier), e.g. a CDA document id.

                                                                                  Control0..1
                                                                                  TypeChoice of: Attachment, Reference(Consent, DocumentReference, Contract, QuestionnaireResponse)
                                                                                  [x] NoteSeeChoice of Data Typesfor further information about how to use [x]
                                                                                  Is Modifierfalse
                                                                                  Must Supporttrue
                                                                                  Must Support TypesNo must-support rules about the choice of types/profiles
                                                                                  Obligations
                                                                                    ObligationsActor
                                                                                    SHALL:populate-if-knownNguồn tạo hồ sơ lâm sàng (Document Source)
                                                                                    SHALL:no-error & SHALL:persistKho hồ sơ EMR (Repository)
                                                                                    SHALL:no-error & SHALL:handleỨng dụng người dân (Citizen App)
                                                                                    Summarytrue
                                                                                    Requirements

                                                                                    Bằng chứng đồng ý phải cho phép chứng minh nội dung Luật 91/2025/QH15 Điều 9 khoản 2 (loại dữ liệu/mục đích; bên kiểm soát/xử lý; quyền và nghĩa vụ của chủ thể) và thông báo riêng khi xử lý dữ liệu cá nhân nhạy cảm theo NĐ 356/2025/NĐ-CP Điều 6 khoản 4. Từ 0.10.0, các nội dung này có evidence contract có cấu trúc là vn-ext-consent-disclosure và được ép bằng invariant cho mọi bản ghi có rule permit. source[x] giữ vai trò trỏ tới BẢN GỐC đã lưu (Điều 6 khoản 2) — bắt buộc có source[x] hoặc evidenceLocator; bản thân source[x] không thay được nội dung đã thông báo, và nội dung đã thông báo không thay được bản gốc.

                                                                                    Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                    42. Consent.policy
                                                                                    Definition

                                                                                    Tham chiếu đến văn bản hoặc chính sách liên quan. Việc khai báo URI không tự xác lập căn cứ pháp lý hoặc chứng minh tuân thủ.

                                                                                    ShortCăn cứ pháp lý
                                                                                    Control0..*
                                                                                    TypeBackboneElement
                                                                                    Is Modifierfalse
                                                                                    Must Supporttrue
                                                                                    Obligations
                                                                                      ObligationsActor
                                                                                      SHALL:populate-if-knownNguồn tạo hồ sơ lâm sàng (Document Source)
                                                                                      SHALL:no-error & SHALL:persistKho hồ sơ EMR (Repository)
                                                                                      SHALL:no-error & SHALL:handleỨng dụng người dân (Citizen App)
                                                                                      Summaryfalse
                                                                                      Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                      44. Consent.policy.id
                                                                                      Definition

                                                                                      Unique id for the element within a resource (for internal references). This may be any string value that does not contain spaces.

                                                                                      ShortUnique id for inter-element referencing
                                                                                      Control0..1
                                                                                      Typestring
                                                                                      Is Modifierfalse
                                                                                      XML FormatIn the XML format, this property is represented as an attribute.
                                                                                      Summaryfalse
                                                                                      46. Consent.policy.extension
                                                                                      Definition

                                                                                      May be used to represent additional information that is not part of the basic definition of the element. To make the use of extensions safe and manageable, there is a strict set of governance applied to the definition and use of extensions. Though any implementer can define an extension, there is a set of requirements that SHALL be met as part of the definition of the extension.

                                                                                      ShortAdditional content defined by implementations
                                                                                      Comments

                                                                                      There can be no stigma associated with the use of extensions by any application, project, or standard - regardless of the institution or jurisdiction that uses or defines the extensions. The use of extensions is what allows the FHIR specification to retain a core level of simplicity for everyone.

                                                                                      Control0..*
                                                                                      TypeExtension
                                                                                      Is Modifierfalse
                                                                                      Summaryfalse
                                                                                      Alternate Namesextensions, user content
                                                                                      Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                      ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
                                                                                      48. Consent.policy.modifierExtension
                                                                                      Definition

                                                                                      May be used to represent additional information that is not part of the basic definition of the element and that modifies the understanding of the element in which it is contained and/or the understanding of the containing element's descendants. Usually modifier elements provide negation or qualification. To make the use of extensions safe and manageable, there is a strict set of governance applied to the definition and use of extensions. Though any implementer can define an extension, there is a set of requirements that SHALL be met as part of the definition of the extension. Applications processing a resource are required to check for modifier extensions.

                                                                                      Modifier extensions SHALL NOT change the meaning of any elements on Resource or DomainResource (including cannot change the meaning of modifierExtension itself).

                                                                                      ShortExtensions that cannot be ignored even if unrecognized
                                                                                      Comments

                                                                                      There can be no stigma associated with the use of extensions by any application, project, or standard - regardless of the institution or jurisdiction that uses or defines the extensions. The use of extensions is what allows the FHIR specification to retain a core level of simplicity for everyone.

                                                                                      Control0..*
                                                                                      TypeExtension
                                                                                      Is Modifiertrue because Modifier extensions are expected to modify the meaning or interpretation of the element that contains them
                                                                                      Summarytrue
                                                                                      Requirements

                                                                                      Modifier extensions allow for extensions that cannot be safely ignored to be clearly distinguished from the vast majority of extensions which can be safely ignored. This promotes interoperability by eliminating the need for implementers to prohibit the presence of extensions. For further information, see the definition of modifier extensions.

                                                                                      Alternate Namesextensions, user content, modifiers
                                                                                      Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                      ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
                                                                                      50. Consent.policy.authority
                                                                                      Definition

                                                                                      Entity or Organization having regulatory jurisdiction or accountability for enforcing policies pertaining to Consent Directives.

                                                                                      ShortCơ quan ban hành
                                                                                      Control0..1
                                                                                      This element is affected by the following invariants: ppc-1
                                                                                      Typeuri
                                                                                      Is Modifierfalse
                                                                                      Primitive ValueThis primitive element may be present, or absent, or replaced by an extension
                                                                                      Summaryfalse
                                                                                      Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                      52. Consent.policy.uri
                                                                                      Definition

                                                                                      URL/URI văn bản pháp luật (VD: Luật 91/2025/QH15, NĐ 356/2025/NĐ-CP, TT 13/2025/TT-BYT).

                                                                                      ShortURL văn bản pháp lý
                                                                                      Comments

                                                                                      This element is for discoverability / documentation and does not modify or qualify the policy rules.

                                                                                      Control0..1
                                                                                      This element is affected by the following invariants: ppc-1
                                                                                      Typeuri
                                                                                      Is Modifierfalse
                                                                                      Primitive ValueThis primitive element may be present, or absent, or replaced by an extension
                                                                                      Must Supporttrue
                                                                                      Summaryfalse
                                                                                      Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                      54. Consent.policyRule
                                                                                      Definition

                                                                                      A reference to the specific base computable regulation or policy.

                                                                                      ShortRegulation that this consents to
                                                                                      Comments

                                                                                      If the policyRule is absent, computable consent would need to be constructed from the elements of the Consent resource.

                                                                                      Control0..1
                                                                                      This element is affected by the following invariants: ppc-1
                                                                                      BindingUnless not suitable, these codes SHALL be taken from ConsentPolicyRuleCodes
                                                                                      (extensible to http://hl7.org/fhir/ValueSet/consent-policy|4.0.1)

                                                                                      Regulatory policy examples.

                                                                                      TypeCodeableConcept
                                                                                      Is Modifierfalse
                                                                                      Summarytrue
                                                                                      Requirements

                                                                                      Might be a unique identifier of a policy set in XACML, or other rules engine.

                                                                                      Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                      56. Consent.verification
                                                                                      Definition

                                                                                      Whether a treatment instruction (e.g. artificial respiration yes or no) was verified with the patient, his/her family or another authorized person.

                                                                                      ShortConsent Verified by patient or family
                                                                                      Control0..*
                                                                                      TypeBackboneElement
                                                                                      Is Modifierfalse
                                                                                      Summarytrue
                                                                                      Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                      58. Consent.verification.id
                                                                                      Definition

                                                                                      Unique id for the element within a resource (for internal references). This may be any string value that does not contain spaces.

                                                                                      ShortUnique id for inter-element referencing
                                                                                      Control0..1
                                                                                      Typestring
                                                                                      Is Modifierfalse
                                                                                      XML FormatIn the XML format, this property is represented as an attribute.
                                                                                      Summaryfalse
                                                                                      60. Consent.verification.extension
                                                                                      Definition

                                                                                      May be used to represent additional information that is not part of the basic definition of the element. To make the use of extensions safe and manageable, there is a strict set of governance applied to the definition and use of extensions. Though any implementer can define an extension, there is a set of requirements that SHALL be met as part of the definition of the extension.

                                                                                      ShortAdditional content defined by implementations
                                                                                      Comments

                                                                                      There can be no stigma associated with the use of extensions by any application, project, or standard - regardless of the institution or jurisdiction that uses or defines the extensions. The use of extensions is what allows the FHIR specification to retain a core level of simplicity for everyone.

                                                                                      Control0..*
                                                                                      TypeExtension
                                                                                      Is Modifierfalse
                                                                                      Summaryfalse
                                                                                      Alternate Namesextensions, user content
                                                                                      Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                      ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
                                                                                      62. Consent.verification.modifierExtension
                                                                                      Definition

                                                                                      May be used to represent additional information that is not part of the basic definition of the element and that modifies the understanding of the element in which it is contained and/or the understanding of the containing element's descendants. Usually modifier elements provide negation or qualification. To make the use of extensions safe and manageable, there is a strict set of governance applied to the definition and use of extensions. Though any implementer can define an extension, there is a set of requirements that SHALL be met as part of the definition of the extension. Applications processing a resource are required to check for modifier extensions.

                                                                                      Modifier extensions SHALL NOT change the meaning of any elements on Resource or DomainResource (including cannot change the meaning of modifierExtension itself).

                                                                                      ShortExtensions that cannot be ignored even if unrecognized
                                                                                      Comments

                                                                                      There can be no stigma associated with the use of extensions by any application, project, or standard - regardless of the institution or jurisdiction that uses or defines the extensions. The use of extensions is what allows the FHIR specification to retain a core level of simplicity for everyone.

                                                                                      Control0..*
                                                                                      TypeExtension
                                                                                      Is Modifiertrue because Modifier extensions are expected to modify the meaning or interpretation of the element that contains them
                                                                                      Summarytrue
                                                                                      Requirements

                                                                                      Modifier extensions allow for extensions that cannot be safely ignored to be clearly distinguished from the vast majority of extensions which can be safely ignored. This promotes interoperability by eliminating the need for implementers to prohibit the presence of extensions. For further information, see the definition of modifier extensions.

                                                                                      Alternate Namesextensions, user content, modifiers
                                                                                      Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                      ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
                                                                                      64. Consent.verification.verified
                                                                                      Definition

                                                                                      Has the instruction been verified.

                                                                                      ShortHas been verified
                                                                                      Control1..1
                                                                                      Typeboolean
                                                                                      Is Modifierfalse
                                                                                      Primitive ValueThis primitive element may be present, or absent, or replaced by an extension
                                                                                      Summarytrue
                                                                                      Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                      66. Consent.verification.verifiedWith
                                                                                      Definition

                                                                                      Who verified the instruction (Patient, Relative or other Authorized Person).

                                                                                      ShortPerson who verified
                                                                                      Control0..1
                                                                                      TypeReference(Patient, RelatedPerson)
                                                                                      Is Modifierfalse
                                                                                      Summaryfalse
                                                                                      Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                      68. Consent.verification.verificationDate
                                                                                      Definition

                                                                                      Date verification was collected.

                                                                                      ShortWhen consent verified
                                                                                      Control0..1
                                                                                      TypedateTime
                                                                                      Is Modifierfalse
                                                                                      Primitive ValueThis primitive element may be present, or absent, or replaced by an extension
                                                                                      Summaryfalse
                                                                                      Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                      70. Consent.provision
                                                                                      Definition

                                                                                      Quy tắc cho phép/từ chối xử lý dữ liệu theo mục đích, đối tượng, thời hạn cụ thể.

                                                                                      ShortQuy tắc đồng ý chi tiết
                                                                                      Control0..1
                                                                                      TypeBackboneElement
                                                                                      Is Modifierfalse
                                                                                      Must Supporttrue
                                                                                      Obligations
                                                                                        ObligationsActor
                                                                                        SHALL:populate-if-knownNguồn tạo hồ sơ lâm sàng (Document Source)
                                                                                        SHALL:no-error & SHALL:persistKho hồ sơ EMR (Repository)
                                                                                        SHALL:no-error & SHALL:handleỨng dụng người dân (Citizen App)
                                                                                        Summarytrue
                                                                                        Requirements

                                                                                        Mỗi quy tắc triển khai phải truy vết được tới nội dung đồng ý đã cung cấp theo Luật 91/2025/QH15 Điều 9 khoản 2. Từ 0.10.0: mọi rule permit bắt buộc có purpose (vn-consent-permit-purpose-required), và nội dung đã thông báo — loại dữ liệu, bên kiểm soát và vai trò, quyền và nghĩa vụ của chủ thể, thông báo dữ liệu nhạy cảm — bắt buộc khai ở vn-ext-consent-disclosure cấp Consent.

                                                                                        Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                        72. Consent.provision.id
                                                                                        Definition

                                                                                        Unique id for the element within a resource (for internal references). This may be any string value that does not contain spaces.

                                                                                        ShortUnique id for inter-element referencing
                                                                                        Control0..1
                                                                                        Typestring
                                                                                        Is Modifierfalse
                                                                                        XML FormatIn the XML format, this property is represented as an attribute.
                                                                                        Summaryfalse
                                                                                        74. Consent.provision.extension
                                                                                        Definition

                                                                                        May be used to represent additional information that is not part of the basic definition of the element. To make the use of extensions safe and manageable, there is a strict set of governance applied to the definition and use of extensions. Though any implementer can define an extension, there is a set of requirements that SHALL be met as part of the definition of the extension.

                                                                                        ShortAdditional content defined by implementations
                                                                                        Comments

                                                                                        There can be no stigma associated with the use of extensions by any application, project, or standard - regardless of the institution or jurisdiction that uses or defines the extensions. The use of extensions is what allows the FHIR specification to retain a core level of simplicity for everyone.

                                                                                        Control0..*
                                                                                        TypeExtension
                                                                                        Is Modifierfalse
                                                                                        Summaryfalse
                                                                                        Alternate Namesextensions, user content
                                                                                        Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                        ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
                                                                                        76. Consent.provision.modifierExtension
                                                                                        Definition

                                                                                        May be used to represent additional information that is not part of the basic definition of the element and that modifies the understanding of the element in which it is contained and/or the understanding of the containing element's descendants. Usually modifier elements provide negation or qualification. To make the use of extensions safe and manageable, there is a strict set of governance applied to the definition and use of extensions. Though any implementer can define an extension, there is a set of requirements that SHALL be met as part of the definition of the extension. Applications processing a resource are required to check for modifier extensions.

                                                                                        Modifier extensions SHALL NOT change the meaning of any elements on Resource or DomainResource (including cannot change the meaning of modifierExtension itself).

                                                                                        ShortExtensions that cannot be ignored even if unrecognized
                                                                                        Comments

                                                                                        There can be no stigma associated with the use of extensions by any application, project, or standard - regardless of the institution or jurisdiction that uses or defines the extensions. The use of extensions is what allows the FHIR specification to retain a core level of simplicity for everyone.

                                                                                        Control0..*
                                                                                        TypeExtension
                                                                                        Is Modifiertrue because Modifier extensions are expected to modify the meaning or interpretation of the element that contains them
                                                                                        Summarytrue
                                                                                        Requirements

                                                                                        Modifier extensions allow for extensions that cannot be safely ignored to be clearly distinguished from the vast majority of extensions which can be safely ignored. This promotes interoperability by eliminating the need for implementers to prohibit the presence of extensions. For further information, see the definition of modifier extensions.

                                                                                        Alternate Namesextensions, user content, modifiers
                                                                                        Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                        ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
                                                                                        78. Consent.provision.type
                                                                                        Definition

                                                                                        Action to take - permit or deny - when the rule conditions are met. Not permitted in root rule, required in all nested rules.

                                                                                        Shortdeny | permit
                                                                                        Comments

                                                                                        R4: type không được dùng ở root rule — root chỉ là khung; mọi rule permit/deny nằm ở provision.provision (vn-consent-provision-structure).

                                                                                        Control0..0
                                                                                        BindingThe codes SHALL be taken from ConsentProvisionType
                                                                                        (required to http://hl7.org/fhir/ValueSet/consent-provision-type|4.0.1)

                                                                                        How a rule statement is applied, such as adding additional consent or removing consent.

                                                                                        Typecode
                                                                                        Is Modifierfalse
                                                                                        Primitive ValueThis primitive element may be present, or absent, or replaced by an extension
                                                                                        Summarytrue
                                                                                        Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                        80. Consent.provision.period
                                                                                        Definition

                                                                                        Thời hạn đồng ý (nếu chủ thể ấn định). Chủ thể có quyền yêu cầu rút lại/hạn chế xử lý theo Luật 91/2025/QH15 Điều 10 (trừ trường hợp Điều 19 hoặc pháp luật quy định khác). Bằng chứng về thời hạn và việc rút lại phải được quản lý theo quy trình áp dụng; Luật không bắt buộc một representation FHIR cụ thể.

                                                                                        ShortThời hạn hiệu lực
                                                                                        Comments

                                                                                        KHÔNG bắt buộc period.end: sự đồng ý vô thời hạn là hợp pháp — có hiệu lực cho đến khi chủ thể thay đổi (Luật 91/2025/QH15 Điều 9 khoản 4 điểm c). Invariant vn-consent-period-end-required (≤0.7.0) đã gỡ vì mâu thuẫn điều khoản này.

                                                                                        Control0..1
                                                                                        TypePeriod
                                                                                        Is Modifierfalse
                                                                                        Must Supporttrue
                                                                                        Summarytrue
                                                                                        Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                        82. Consent.provision.actor
                                                                                        Definition

                                                                                        Bên được phép/từ chối xử lý: CSKCB, BHXH, cơ quan y tế dự phòng, người đại diện, v.v. LƯU Ý Điều 26 khoản 2 Luật 91/2025/QH15: cấm cung cấp DLCN cho bên thứ ba là tổ chức CSSK/bảo hiểm khác trừ khi chủ thể yêu cầu bằng văn bản hoặc thuộc Điều 19 khoản 1 — mô hình mặc định là deny với bên thứ ba.

                                                                                        ShortBên liên quan
                                                                                        Control0..*
                                                                                        TypeBackboneElement
                                                                                        Is Modifierfalse
                                                                                        Summaryfalse
                                                                                        Meaning if MissingThere is no specific actor associated with the exception
                                                                                        Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                        84. Consent.provision.actor.id
                                                                                        Definition

                                                                                        Unique id for the element within a resource (for internal references). This may be any string value that does not contain spaces.

                                                                                        ShortUnique id for inter-element referencing
                                                                                        Control0..1
                                                                                        Typestring
                                                                                        Is Modifierfalse
                                                                                        XML FormatIn the XML format, this property is represented as an attribute.
                                                                                        Summaryfalse
                                                                                        86. Consent.provision.actor.extension
                                                                                        Definition

                                                                                        May be used to represent additional information that is not part of the basic definition of the element. To make the use of extensions safe and manageable, there is a strict set of governance applied to the definition and use of extensions. Though any implementer can define an extension, there is a set of requirements that SHALL be met as part of the definition of the extension.

                                                                                        ShortAdditional content defined by implementations
                                                                                        Comments

                                                                                        There can be no stigma associated with the use of extensions by any application, project, or standard - regardless of the institution or jurisdiction that uses or defines the extensions. The use of extensions is what allows the FHIR specification to retain a core level of simplicity for everyone.

                                                                                        Control0..*
                                                                                        TypeExtension
                                                                                        Is Modifierfalse
                                                                                        Summaryfalse
                                                                                        Alternate Namesextensions, user content
                                                                                        Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                        ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
                                                                                        88. Consent.provision.actor.modifierExtension
                                                                                        Definition

                                                                                        May be used to represent additional information that is not part of the basic definition of the element and that modifies the understanding of the element in which it is contained and/or the understanding of the containing element's descendants. Usually modifier elements provide negation or qualification. To make the use of extensions safe and manageable, there is a strict set of governance applied to the definition and use of extensions. Though any implementer can define an extension, there is a set of requirements that SHALL be met as part of the definition of the extension. Applications processing a resource are required to check for modifier extensions.

                                                                                        Modifier extensions SHALL NOT change the meaning of any elements on Resource or DomainResource (including cannot change the meaning of modifierExtension itself).

                                                                                        ShortExtensions that cannot be ignored even if unrecognized
                                                                                        Comments

                                                                                        There can be no stigma associated with the use of extensions by any application, project, or standard - regardless of the institution or jurisdiction that uses or defines the extensions. The use of extensions is what allows the FHIR specification to retain a core level of simplicity for everyone.

                                                                                        Control0..*
                                                                                        TypeExtension
                                                                                        Is Modifiertrue because Modifier extensions are expected to modify the meaning or interpretation of the element that contains them
                                                                                        Summarytrue
                                                                                        Requirements

                                                                                        Modifier extensions allow for extensions that cannot be safely ignored to be clearly distinguished from the vast majority of extensions which can be safely ignored. This promotes interoperability by eliminating the need for implementers to prohibit the presence of extensions. For further information, see the definition of modifier extensions.

                                                                                        Alternate Namesextensions, user content, modifiers
                                                                                        Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                        ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
                                                                                        90. Consent.provision.actor.role
                                                                                        Definition

                                                                                        How the individual is involved in the resources content that is described in the exception.

                                                                                        ShortHow the actor is involved
                                                                                        Control1..1
                                                                                        BindingUnless not suitable, these codes SHALL be taken from SecurityRoleType
                                                                                        (extensible to http://hl7.org/fhir/ValueSet/security-role-type|4.0.1)

                                                                                        How an actor is involved in the consent considerations.

                                                                                        TypeCodeableConcept
                                                                                        Is Modifierfalse
                                                                                        Summaryfalse
                                                                                        Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                        92. Consent.provision.actor.reference
                                                                                        Definition

                                                                                        The resource that identifies the actor. To identify actors by type, use group to identify a set of actors by some property they share (e.g. 'admitting officers').

                                                                                        ShortResource for the actor (or group, by role)
                                                                                        Control1..1
                                                                                        TypeReference(Device, Group, CareTeam, Organization, Patient, Practitioner, RelatedPerson, PractitionerRole)
                                                                                        Is Modifierfalse
                                                                                        Summaryfalse
                                                                                        Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                        94. Consent.provision.action
                                                                                        Definition

                                                                                        Actions controlled by this Rule.

                                                                                        ShortActions controlled by this rule
                                                                                        Comments

                                                                                        Note that this is the direct action (not the grounds for the action covered in the purpose element). At present, the only action in the understood and tested scope of this resource is 'read'.

                                                                                        Control0..*
                                                                                        BindingFor example codes, see ConsentActionCodes
                                                                                        (example to http://hl7.org/fhir/ValueSet/consent-action|4.0.1)

                                                                                        Detailed codes for the consent action.

                                                                                        TypeCodeableConcept
                                                                                        Is Modifierfalse
                                                                                        Summarytrue
                                                                                        Meaning if Missingall actions
                                                                                        Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                        96. Consent.provision.securityLabel
                                                                                        Definition

                                                                                        A security label, comprised of 0..* security label fields (Privacy tags), which define which resources are controlled by this exception.

                                                                                        ShortSecurity Labels that define affected resources
                                                                                        Comments

                                                                                        If the consent specifies a security label of "R" then it applies to all resources that are labeled "R" or lower. E.g. for Confidentiality, it's a high water mark. For other kinds of security labels, subsumption logic applies. When the purpose of use tag is on the data, access request purpose of use shall not conflict.

                                                                                        Control0..*
                                                                                        BindingUnless not suitable, these codes SHALL be taken from All Security Labels
                                                                                        (extensible to http://hl7.org/fhir/ValueSet/security-labels|4.0.1)

                                                                                        Security Labels from the Healthcare Privacy and Security Classification System.

                                                                                        TypeCoding
                                                                                        Is Modifierfalse
                                                                                        Summarytrue
                                                                                        Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                        98. Consent.provision.purpose
                                                                                        Definition

                                                                                        Mục đích cụ thể: khám chữa bệnh, BHYT, y tế công cộng, nghiên cứu, bệnh án điện tử, chia sẻ hồ sơ. Sự đồng ý thể hiện theo TỪNG mục đích — Luật 91/2025/QH15 Điều 9 khoản 4 điểm a; không được kèm điều kiện ép đồng ý mục đích khác (điểm b).

                                                                                        ShortMục đích xử lý
                                                                                        Comments

                                                                                        When the purpose of use tag is on the data, access request purpose of use shall not conflict.

                                                                                        Control0..*
                                                                                        BindingUnless not suitable, these codes SHALL be taken from Mục đích xử lý dữ liệu y tế — VN Consent Purpose ValueSet
                                                                                        (extensible to http://fhir.hl7.org.vn/core/ValueSet/vn-consent-purpose-vs)
                                                                                        TypeCoding
                                                                                        Is Modifierfalse
                                                                                        Must Supporttrue
                                                                                        Summarytrue
                                                                                        Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                        100. Consent.provision.class
                                                                                        Definition

                                                                                        Loại resource FHIR được phép/từ chối: Condition, Observation, Claim, v.v.

                                                                                        ShortLoại dữ liệu
                                                                                        Comments

                                                                                        Multiple types are or'ed together. The intention of the contentType element is that the codes refer to profiles or document types defined in a standard or an implementation guide somewhere.

                                                                                        Control0..*
                                                                                        BindingUnless not suitable, these codes SHALL be taken from ConsentContentClass
                                                                                        (extensible to http://hl7.org/fhir/ValueSet/consent-content-class|4.0.1)

                                                                                        The class (type) of information a consent rule covers.

                                                                                        TypeCoding
                                                                                        Is Modifierfalse
                                                                                        Summarytrue
                                                                                        Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                        102. Consent.provision.code
                                                                                        Definition

                                                                                        If this code is found in an instance, then the rule applies.

                                                                                        Shorte.g. LOINC or SNOMED CT code, etc. in the content
                                                                                        Comments

                                                                                        Typical use of this is a Document code with class = CDA.

                                                                                        Control0..*
                                                                                        BindingFor example codes, see ConsentContentCodes
                                                                                        (example to http://hl7.org/fhir/ValueSet/consent-content-code|4.0.1)

                                                                                        If this code is found in an instance, then the exception applies.

                                                                                        TypeCodeableConcept
                                                                                        Is Modifierfalse
                                                                                        Summarytrue
                                                                                        Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                        104. Consent.provision.dataPeriod
                                                                                        Definition

                                                                                        Clinical or Operational Relevant period of time that bounds the data controlled by this rule.

                                                                                        ShortTimeframe for data controlled by this rule
                                                                                        Comments

                                                                                        This has a different sense to the Consent.period - that is when the consent agreement holds. This is the time period of the data that is controlled by the agreement.

                                                                                        Control0..1
                                                                                        TypePeriod
                                                                                        Is Modifierfalse
                                                                                        Summarytrue
                                                                                        Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                        106. Consent.provision.data
                                                                                        Definition

                                                                                        The resources controlled by this rule if specific resources are referenced.

                                                                                        ShortData controlled by this rule
                                                                                        Control0..*
                                                                                        TypeBackboneElement
                                                                                        Is Modifierfalse
                                                                                        Summarytrue
                                                                                        Meaning if Missingall data
                                                                                        Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                        108. Consent.provision.data.id
                                                                                        Definition

                                                                                        Unique id for the element within a resource (for internal references). This may be any string value that does not contain spaces.

                                                                                        ShortUnique id for inter-element referencing
                                                                                        Control0..1
                                                                                        Typestring
                                                                                        Is Modifierfalse
                                                                                        XML FormatIn the XML format, this property is represented as an attribute.
                                                                                        Summaryfalse
                                                                                        110. Consent.provision.data.extension
                                                                                        Definition

                                                                                        May be used to represent additional information that is not part of the basic definition of the element. To make the use of extensions safe and manageable, there is a strict set of governance applied to the definition and use of extensions. Though any implementer can define an extension, there is a set of requirements that SHALL be met as part of the definition of the extension.

                                                                                        ShortAdditional content defined by implementations
                                                                                        Comments

                                                                                        There can be no stigma associated with the use of extensions by any application, project, or standard - regardless of the institution or jurisdiction that uses or defines the extensions. The use of extensions is what allows the FHIR specification to retain a core level of simplicity for everyone.

                                                                                        Control0..*
                                                                                        TypeExtension
                                                                                        Is Modifierfalse
                                                                                        Summaryfalse
                                                                                        Alternate Namesextensions, user content
                                                                                        Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                        ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
                                                                                        112. Consent.provision.data.modifierExtension
                                                                                        Definition

                                                                                        May be used to represent additional information that is not part of the basic definition of the element and that modifies the understanding of the element in which it is contained and/or the understanding of the containing element's descendants. Usually modifier elements provide negation or qualification. To make the use of extensions safe and manageable, there is a strict set of governance applied to the definition and use of extensions. Though any implementer can define an extension, there is a set of requirements that SHALL be met as part of the definition of the extension. Applications processing a resource are required to check for modifier extensions.

                                                                                        Modifier extensions SHALL NOT change the meaning of any elements on Resource or DomainResource (including cannot change the meaning of modifierExtension itself).

                                                                                        ShortExtensions that cannot be ignored even if unrecognized
                                                                                        Comments

                                                                                        There can be no stigma associated with the use of extensions by any application, project, or standard - regardless of the institution or jurisdiction that uses or defines the extensions. The use of extensions is what allows the FHIR specification to retain a core level of simplicity for everyone.

                                                                                        Control0..*
                                                                                        TypeExtension
                                                                                        Is Modifiertrue because Modifier extensions are expected to modify the meaning or interpretation of the element that contains them
                                                                                        Summarytrue
                                                                                        Requirements

                                                                                        Modifier extensions allow for extensions that cannot be safely ignored to be clearly distinguished from the vast majority of extensions which can be safely ignored. This promotes interoperability by eliminating the need for implementers to prohibit the presence of extensions. For further information, see the definition of modifier extensions.

                                                                                        Alternate Namesextensions, user content, modifiers
                                                                                        Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                        ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
                                                                                        114. Consent.provision.data.meaning
                                                                                        Definition

                                                                                        How the resource reference is interpreted when testing consent restrictions.

                                                                                        Shortinstance | related | dependents | authoredby
                                                                                        Control1..1
                                                                                        BindingThe codes SHALL be taken from ConsentDataMeaning
                                                                                        (required to http://hl7.org/fhir/ValueSet/consent-data-meaning|4.0.1)

                                                                                        How a resource reference is interpreted when testing consent restrictions.

                                                                                        Typecode
                                                                                        Is Modifierfalse
                                                                                        Primitive ValueThis primitive element may be present, or absent, or replaced by an extension
                                                                                        Summarytrue
                                                                                        Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                        116. Consent.provision.data.reference
                                                                                        Definition

                                                                                        A reference to a specific resource that defines which resources are covered by this consent.

                                                                                        ShortThe actual data reference
                                                                                        Control1..1
                                                                                        TypeReference(Resource)
                                                                                        Is Modifierfalse
                                                                                        Summarytrue
                                                                                        Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                        118. Consent.provision.provision
                                                                                        Definition

                                                                                        Rules which provide exceptions to the base rule or subrules.

                                                                                        ShortCác rule permit/deny
                                                                                        Control0..*
                                                                                        TypeBackboneElement
                                                                                        Is Modifierfalse
                                                                                        Must Supporttrue
                                                                                        Summaryfalse
                                                                                        Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                        120. Consent.provision.provision.id
                                                                                        Definition

                                                                                        Unique id for the element within a resource (for internal references). This may be any string value that does not contain spaces.

                                                                                        ShortUnique id for inter-element referencing
                                                                                        Control0..1
                                                                                        Typestring
                                                                                        Is Modifierfalse
                                                                                        XML FormatIn the XML format, this property is represented as an attribute.
                                                                                        Summaryfalse
                                                                                        122. Consent.provision.provision.extension
                                                                                        Definition

                                                                                        May be used to represent additional information that is not part of the basic definition of the element. To make the use of extensions safe and manageable, there is a strict set of governance applied to the definition and use of extensions. Though any implementer can define an extension, there is a set of requirements that SHALL be met as part of the definition of the extension.

                                                                                        ShortAdditional content defined by implementations
                                                                                        Comments

                                                                                        There can be no stigma associated with the use of extensions by any application, project, or standard - regardless of the institution or jurisdiction that uses or defines the extensions. The use of extensions is what allows the FHIR specification to retain a core level of simplicity for everyone.

                                                                                        Control0..*
                                                                                        TypeExtension
                                                                                        Is Modifierfalse
                                                                                        Summaryfalse
                                                                                        Alternate Namesextensions, user content
                                                                                        Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                        ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
                                                                                        124. Consent.provision.provision.modifierExtension
                                                                                        Definition

                                                                                        May be used to represent additional information that is not part of the basic definition of the element and that modifies the understanding of the element in which it is contained and/or the understanding of the containing element's descendants. Usually modifier elements provide negation or qualification. To make the use of extensions safe and manageable, there is a strict set of governance applied to the definition and use of extensions. Though any implementer can define an extension, there is a set of requirements that SHALL be met as part of the definition of the extension. Applications processing a resource are required to check for modifier extensions.

                                                                                        Modifier extensions SHALL NOT change the meaning of any elements on Resource or DomainResource (including cannot change the meaning of modifierExtension itself).

                                                                                        ShortExtensions that cannot be ignored even if unrecognized
                                                                                        Comments

                                                                                        There can be no stigma associated with the use of extensions by any application, project, or standard - regardless of the institution or jurisdiction that uses or defines the extensions. The use of extensions is what allows the FHIR specification to retain a core level of simplicity for everyone.

                                                                                        Control0..*
                                                                                        TypeExtension
                                                                                        Is Modifiertrue because Modifier extensions are expected to modify the meaning or interpretation of the element that contains them
                                                                                        Summarytrue
                                                                                        Requirements

                                                                                        Modifier extensions allow for extensions that cannot be safely ignored to be clearly distinguished from the vast majority of extensions which can be safely ignored. This promotes interoperability by eliminating the need for implementers to prohibit the presence of extensions. For further information, see the definition of modifier extensions.

                                                                                        Alternate Namesextensions, user content, modifiers
                                                                                        Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                        ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
                                                                                        126. Consent.provision.provision.type
                                                                                        Definition

                                                                                        permit = cho phép xử lý, deny = từ chối xử lý. Quyền đồng ý/không đồng ý/rút lại theo Luật 91/2025/QH15 Điều 4 khoản 1 điểm b; với thông tin sức khoẻ, đồng ý là bắt buộc trừ Điều 19 khoản 1 (Điều 26 khoản 1 điểm a). Từ chối đang hiệu lực = status active + rule deny (nested).

                                                                                        ShortCho phép / Từ chối
                                                                                        Control1..1
                                                                                        BindingThe codes SHALL be taken from ConsentProvisionType
                                                                                        (required to http://hl7.org/fhir/ValueSet/consent-provision-type|4.0.1)

                                                                                        How a rule statement is applied, such as adding additional consent or removing consent.

                                                                                        Typecode
                                                                                        Is Modifierfalse
                                                                                        Primitive ValueThis primitive element may be present, or absent, or replaced by an extension
                                                                                        Must Supporttrue
                                                                                        Summarytrue
                                                                                        Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                        128. Consent.provision.provision.period
                                                                                        Definition

                                                                                        The timeframe in this rule is valid.

                                                                                        ShortTimeframe for this rule
                                                                                        Control0..1
                                                                                        TypePeriod
                                                                                        Is Modifierfalse
                                                                                        Summarytrue
                                                                                        Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                        130. Consent.provision.provision.actor
                                                                                        Definition

                                                                                        Who or what is controlled by this rule. Use group to identify a set of actors by some property they share (e.g. 'admitting officers').

                                                                                        ShortWho|what controlled by this rule (or group, by role)
                                                                                        Control0..*
                                                                                        TypeBackboneElement
                                                                                        Is Modifierfalse
                                                                                        Summaryfalse
                                                                                        Meaning if MissingThere is no specific actor associated with the exception
                                                                                        Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                        SlicingThis element introduces a set of slices on Consent.provision.provision.actor. The slices areUnordered and Open, and can be differentiated using the following discriminators:
                                                                                        • exists @ extension('http://fhir.hl7.org.vn/core/StructureDefinition/vn-ext-representation-authority')
                                                                                        • 132. Consent.provision.provision.actor.id
                                                                                          Definition

                                                                                          Unique id for the element within a resource (for internal references). This may be any string value that does not contain spaces.

                                                                                          ShortUnique id for inter-element referencing
                                                                                          Control0..1
                                                                                          Typestring
                                                                                          Is Modifierfalse
                                                                                          XML FormatIn the XML format, this property is represented as an attribute.
                                                                                          Summaryfalse
                                                                                          134. Consent.provision.provision.actor.extension
                                                                                          Definition

                                                                                          May be used to represent additional information that is not part of the basic definition of the element. To make the use of extensions safe and manageable, there is a strict set of governance applied to the definition and use of extensions. Though any implementer can define an extension, there is a set of requirements that SHALL be met as part of the definition of the extension.

                                                                                          ShortAdditional content defined by implementations
                                                                                          Comments

                                                                                          There can be no stigma associated with the use of extensions by any application, project, or standard - regardless of the institution or jurisdiction that uses or defines the extensions. The use of extensions is what allows the FHIR specification to retain a core level of simplicity for everyone.

                                                                                          Control0..*
                                                                                          TypeExtension
                                                                                          Is Modifierfalse
                                                                                          Summaryfalse
                                                                                          Alternate Namesextensions, user content
                                                                                          Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                          ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
                                                                                          136. Consent.provision.provision.actor.modifierExtension
                                                                                          Definition

                                                                                          May be used to represent additional information that is not part of the basic definition of the element and that modifies the understanding of the element in which it is contained and/or the understanding of the containing element's descendants. Usually modifier elements provide negation or qualification. To make the use of extensions safe and manageable, there is a strict set of governance applied to the definition and use of extensions. Though any implementer can define an extension, there is a set of requirements that SHALL be met as part of the definition of the extension. Applications processing a resource are required to check for modifier extensions.

                                                                                          Modifier extensions SHALL NOT change the meaning of any elements on Resource or DomainResource (including cannot change the meaning of modifierExtension itself).

                                                                                          ShortExtensions that cannot be ignored even if unrecognized
                                                                                          Comments

                                                                                          There can be no stigma associated with the use of extensions by any application, project, or standard - regardless of the institution or jurisdiction that uses or defines the extensions. The use of extensions is what allows the FHIR specification to retain a core level of simplicity for everyone.

                                                                                          Control0..*
                                                                                          TypeExtension
                                                                                          Is Modifiertrue because Modifier extensions are expected to modify the meaning or interpretation of the element that contains them
                                                                                          Summarytrue
                                                                                          Requirements

                                                                                          Modifier extensions allow for extensions that cannot be safely ignored to be clearly distinguished from the vast majority of extensions which can be safely ignored. This promotes interoperability by eliminating the need for implementers to prohibit the presence of extensions. For further information, see the definition of modifier extensions.

                                                                                          Alternate Namesextensions, user content, modifiers
                                                                                          Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                          ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
                                                                                          138. Consent.provision.provision.actor.role
                                                                                          Definition

                                                                                          How the individual is involved in the resources content that is described in the exception.

                                                                                          ShortHow the actor is involved
                                                                                          Control1..1
                                                                                          BindingUnless not suitable, these codes SHALL be taken from SecurityRoleType
                                                                                          (extensible to http://hl7.org/fhir/ValueSet/security-role-type|4.0.1)

                                                                                          How an actor is involved in the consent considerations.

                                                                                          TypeCodeableConcept
                                                                                          Is Modifierfalse
                                                                                          Summaryfalse
                                                                                          Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                          140. Consent.provision.provision.actor.reference
                                                                                          Definition

                                                                                          The resource that identifies the actor. To identify actors by type, use group to identify a set of actors by some property they share (e.g. 'admitting officers').

                                                                                          ShortResource for the actor (or group, by role)
                                                                                          Control1..1
                                                                                          TypeReference(Device, Group, CareTeam, Organization, Patient, Practitioner, RelatedPerson, PractitionerRole)
                                                                                          Is Modifierfalse
                                                                                          Summaryfalse
                                                                                          Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                          142. Consent.provision.provision.actor:representative
                                                                                          Slice Namerepresentative
                                                                                          Definition

                                                                                          Actor là người đại diện theo pháp luật/giám hộ/được uỷ quyền (Luật 91/2025/QH15 Điều 24 khoản 2). Profile yêu cầu extension vn-ext-representation-authority ngay tại actor này để hệ thống triển khai có thể kiểm tra type/source/verifiedDate/period và áp dụng rule permit/deny. Đây là mô hình kỹ thuật của IG, không thay thế việc xác minh thẩm quyền thực tế hoặc tự tạo hiệu lực pháp lý. Hạn chế lớp dữ liệu được biểu diễn bằng rule type=deny + securityLabel (vn-data-sensitivity-class-vs), thay cho sub-extension restrictedSensitivity đã xoá ở 0.8.0.

                                                                                          ShortNgười đại diện/giám hộ — mang token thẩm quyền
                                                                                          Control0..*
                                                                                          TypeBackboneElement
                                                                                          Is Modifierfalse
                                                                                          Must Supporttrue
                                                                                          Summaryfalse
                                                                                          Meaning if MissingThere is no specific actor associated with the exception
                                                                                          Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                          144. Consent.provision.provision.actor:representative.id
                                                                                          Definition

                                                                                          Unique id for the element within a resource (for internal references). This may be any string value that does not contain spaces.

                                                                                          ShortUnique id for inter-element referencing
                                                                                          Control0..1
                                                                                          Typestring
                                                                                          Is Modifierfalse
                                                                                          XML FormatIn the XML format, this property is represented as an attribute.
                                                                                          Summaryfalse
                                                                                          146. Consent.provision.provision.actor:representative.extension
                                                                                          Definition

                                                                                          An Extension

                                                                                          ShortExtension
                                                                                          Control1..*
                                                                                          TypeExtension
                                                                                          Is Modifierfalse
                                                                                          Summaryfalse
                                                                                          Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                          ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
                                                                                          SlicingThis element introduces a set of slices on Consent.provision.provision.actor.extension. The slices areUnordered and Open, and can be differentiated using the following discriminators:
                                                                                          • value @ url
                                                                                          • 148. Consent.provision.provision.actor:representative.extension:representationAuthority
                                                                                            Slice NamerepresentationAuthority
                                                                                            Definition

                                                                                            Extension ghi nhận THẨM QUYỀN PHÁP LÝ để một người đại diện/giám hộ/được uỷ quyền hành động thay người khác. Mô hình hoá 'token đại diện' phục vụ Policy Decision Point (PDP): miền thẩm quyền, loại thẩm quyền, nguồn xác minh, bằng chứng, thời điểm xác minh, thời hạn. PDP deny-by-default khi quan hệ mâu thuẫn/hết hạn.

                                                                                            THAY ĐỔI 0.10.0 đợt 2 (breaking — kiểm toán 06-07/08/2026, analysis/90 §6.2): tách HAI MIỀN thẩm quyền bằng domain 1..1, vì hai loại quyền không đồng nhất và không suy ra nhau: (1) healthcare-decision — quyết định thay về khám chữa bệnh (Luật KCB 15/2023/QH15 Điều 8); (2) data-subject-rights — thực hiện quyền chủ thể dữ liệu thay chủ thể: đồng ý, truy cập, chỉnh sửa, xoá dữ liệu (Luật 91/2025/QH15 Điều 24; Bộ luật Dân sự Điều 134-143) — vd cha/mẹ xem Sổ SKĐT của con qua VNeID. Một người giữ cả hai quyền = HAI instance extension, mỗi instance một miền với căn cứ, bằng chứng, thời hạn riêng. selectionBasis hạ 1..1 → 0..1: nó là khung của Luật KCB Điều 8 khoản 2 nên bắt buộc trong miền healthcare-decision và phải vắng trong miền data-subject-rights (invariant vn-representation-domain-basis). Thêm evidence 0..* — bằng chứng lặp được mang issuer/document/scope/purpose/validity; quan hệ gia đình hoặc bản ghi quan hệ dân cư KHÔNG tự chứng minh thẩm quyền (uỷ quyền bắt buộc có evidence — invariant vn-representation-proxy-evidence).

                                                                                            THAY ĐỔI 0.10.0 đợt 1 (breaking): thêm selectionBasis — một trong năm nhóm căn cứ lựa chọn tại Luật KCB 15/2023/QH15 Điều 8 khoản 2 điểm a-đ; thêm legalProvision 1..* để ghi văn bản và điều/khoản cụ thể, cho phép lặp vì một thẩm quyền thường dựa trên nhiều quy định đồng thời; nâng verifiedDate từ 0..1 lên 1..1. Kèm invariant vn-representation-type-selection-basis ràng loại thẩm quyền với nhóm căn cứ. Quy tắc một người bệnh chỉ có một người đại diện tại một thời điểm (Điều 8 khoản 1) CỐ Ý không invariant-hoá: nó cần truy vấn toàn bộ authority đang hiệu lực của cùng người bệnh, việc một instance đơn lẻ không thấy được — thuộc tầng PDP/service.

                                                                                            THAY ĐỔI 0.8.0 (breaking — hậu kiểm toán Codex): sub-extension restrictedSensitivity đã XOÁ — ngữ nghĩa hạn chế truy cập là QUYẾT ĐỊNH CHÍNH SÁCH, không phải thuộc tính token: biểu diễn bằng VNCoreConsent.provision (type=deny + securityLabel theo vn-data-sensitivity-class-vs + actor[representative] gắn chính extension này để link token↔consent — PDP resolve một chiều qua Consent). Căn cứ: Bộ luật Dân sự 2015 (đại diện/giám hộ/uỷ quyền); Luật Căn cước 2023 (quan hệ nhân thân CSDLQGDC); Luật 91/2025/QH15 Điều 24 (đại diện theo pháp luật) + Luật Trẻ em 2016 (dữ liệu trẻ em, lớp nhạy cảm).

                                                                                            ShortThẩm quyền đại diện truy cập dữ liệu — Representation Authority Extension
                                                                                            Control1..1
                                                                                            This element is affected by the following invariants: ele-1
                                                                                            TypeExtension(Thẩm quyền đại diện truy cập dữ liệu — Representation Authority Extension) (Complex Extension)
                                                                                            Is Modifierfalse
                                                                                            Must Supporttrue
                                                                                            Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                            ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
                                                                                            vn-representation-domain-basis: Miền quyết định khám chữa bệnh bắt buộc có căn cứ lựa chọn theo Luật KCB Điều 8 khoản 2; miền quyền chủ thể dữ liệu không dùng trục căn cứ đó. The healthcare-decision domain SHALL carry a selectionBasis; the data-subject-rights domain SHALL NOT. ((extension.where(url='domain').value.ofType(Coding).code = 'healthcare-decision' implies extension.where(url='selectionBasis').exists()) and (extension.where(url='domain').value.ofType(Coding).code = 'data-subject-rights' implies extension.where(url='selectionBasis').empty()))
                                                                                            vn-representation-type-selection-basis: Loại thẩm quyền phải tương thích với nhóm căn cứ lựa chọn tại Luật KCB Điều 8 khoản 2. The authority type SHALL be consistent with the statutory selection basis. (extension.where(url='selectionBasis').empty() or ((extension.where(url='selectionBasis').value.ofType(Coding).code = 'civil-code-representative') and (extension.where(url='type').value.ofType(Coding).code = 'legal-representative' or extension.where(url='type').value.ofType(Coding).code = 'guardian' or extension.where(url='type').value.ofType(Coding).code = 'delegated-proxy')) or ((extension.where(url='selectionBasis').value.ofType(Coding).code = 'responsible-legal-entity-appointed') and (extension.where(url='type').value.ofType(Coding).code = 'legal-representative' or extension.where(url='type').value.ofType(Coding).code = 'healthcare-agent')) or ((extension.where(url='selectionBasis').value.ofType(Coding).code = 'adult-patient-selected' or extension.where(url='selectionBasis').value.ofType(Coding).code = 'family-selected' or extension.where(url='selectionBasis').value.ofType(Coding).code = 'voluntary-obligation-performer') and extension.where(url='type').value.ofType(Coding).code = 'healthcare-agent'))
                                                                                            vn-representation-proxy-evidence: Thẩm quyền theo uỷ quyền phải kèm ít nhất một bằng chứng (văn bản uỷ quyền). A delegated-proxy authority SHALL carry at least one evidence entry. (extension.where(url='type').value.ofType(Coding).code = 'delegated-proxy' implies extension.where(url='evidence').exists())
                                                                                            vn-representation-proxy-bounded: Thẩm quyền theo uỷ quyền phải có GIỚI HẠN máy-đọc: NGÀY KẾT THÚC (period.end của token hoặc validity.end trong bằng chứng — chỉ có ngày bắt đầu là uỷ quyền vô thời hạn) VÀ phạm vi (scope trong ít nhất một bằng chứng) — Bộ luật Dân sự Điều 138/140/141. A delegated-proxy authority SHALL carry a machine-readable validity bound AND scope. (extension.where(url='type').value.ofType(Coding).code != 'delegated-proxy' or ((extension.where(url='period').value.ofType(Period).end.exists() or extension.where(url='evidence').extension.where(url='validity').value.ofType(Period).end.exists()) and extension.where(url='evidence').extension.where(url='scope').exists()))
                                                                                            150. Consent.provision.provision.actor:representative.modifierExtension
                                                                                            Definition

                                                                                            May be used to represent additional information that is not part of the basic definition of the element and that modifies the understanding of the element in which it is contained and/or the understanding of the containing element's descendants. Usually modifier elements provide negation or qualification. To make the use of extensions safe and manageable, there is a strict set of governance applied to the definition and use of extensions. Though any implementer can define an extension, there is a set of requirements that SHALL be met as part of the definition of the extension. Applications processing a resource are required to check for modifier extensions.

                                                                                            Modifier extensions SHALL NOT change the meaning of any elements on Resource or DomainResource (including cannot change the meaning of modifierExtension itself).

                                                                                            ShortExtensions that cannot be ignored even if unrecognized
                                                                                            Comments

                                                                                            There can be no stigma associated with the use of extensions by any application, project, or standard - regardless of the institution or jurisdiction that uses or defines the extensions. The use of extensions is what allows the FHIR specification to retain a core level of simplicity for everyone.

                                                                                            Control0..*
                                                                                            TypeExtension
                                                                                            Is Modifiertrue because Modifier extensions are expected to modify the meaning or interpretation of the element that contains them
                                                                                            Summarytrue
                                                                                            Requirements

                                                                                            Modifier extensions allow for extensions that cannot be safely ignored to be clearly distinguished from the vast majority of extensions which can be safely ignored. This promotes interoperability by eliminating the need for implementers to prohibit the presence of extensions. For further information, see the definition of modifier extensions.

                                                                                            Alternate Namesextensions, user content, modifiers
                                                                                            Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                            ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
                                                                                            152. Consent.provision.provision.actor:representative.role
                                                                                            Definition

                                                                                            How the individual is involved in the resources content that is described in the exception.

                                                                                            ShortHow the actor is involved
                                                                                            Control1..1
                                                                                            BindingUnless not suitable, these codes SHALL be taken from SecurityRoleType
                                                                                            (extensible to http://hl7.org/fhir/ValueSet/security-role-type|4.0.1)

                                                                                            How an actor is involved in the consent considerations.

                                                                                            TypeCodeableConcept
                                                                                            Is Modifierfalse
                                                                                            Summaryfalse
                                                                                            Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                            154. Consent.provision.provision.actor:representative.reference
                                                                                            Definition

                                                                                            The resource that identifies the actor. To identify actors by type, use group to identify a set of actors by some property they share (e.g. 'admitting officers').

                                                                                            ShortResource for the actor (or group, by role)
                                                                                            Control1..1
                                                                                            TypeReference(Người liên quan/người giám hộ VN Core — VN Core RelatedPerson Profile)
                                                                                            Is Modifierfalse
                                                                                            Summaryfalse
                                                                                            Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                            156. Consent.provision.provision.action
                                                                                            Definition

                                                                                            Actions controlled by this Rule.

                                                                                            ShortActions controlled by this rule
                                                                                            Comments

                                                                                            Note that this is the direct action (not the grounds for the action covered in the purpose element). At present, the only action in the understood and tested scope of this resource is 'read'.

                                                                                            Control0..*
                                                                                            BindingFor example codes, see ConsentActionCodes
                                                                                            (example to http://hl7.org/fhir/ValueSet/consent-action|4.0.1)

                                                                                            Detailed codes for the consent action.

                                                                                            TypeCodeableConcept
                                                                                            Is Modifierfalse
                                                                                            Summarytrue
                                                                                            Meaning if Missingall actions
                                                                                            Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                            158. Consent.provision.provision.securityLabel
                                                                                            Definition

                                                                                            Lớp nhạy cảm dữ liệu (vn-data-sensitivity-class-vs) mà rule áp dụng. Mô hình hạn chế theo lớp: permit theo lớp cơ bản + provision con type=deny với securityLabel lớp bị hạn chế (vd special-protection với người đại diện của vị thành niên — thay sub-extension restrictedSensitivity đã xoá 0.8.0). PDP deny-by-default: không có provision permit phủ lớp dữ liệu → từ chối.

                                                                                            ShortLớp nhạy cảm dữ liệu áp cho rule
                                                                                            Comments

                                                                                            If the consent specifies a security label of "R" then it applies to all resources that are labeled "R" or lower. E.g. for Confidentiality, it's a high water mark. For other kinds of security labels, subsumption logic applies. When the purpose of use tag is on the data, access request purpose of use shall not conflict.

                                                                                            Control0..*
                                                                                            BindingUnless not suitable, these codes SHALL be taken from Lớp nhạy cảm dữ liệu y tế — Vietnam Health Data Sensitivity Class ValueSet
                                                                                            (extensible to http://fhir.hl7.org.vn/core/ValueSet/vn-data-sensitivity-class-vs)
                                                                                            TypeCoding
                                                                                            Is Modifierfalse
                                                                                            Must Supporttrue
                                                                                            Summarytrue
                                                                                            Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                            160. Consent.provision.provision.purpose
                                                                                            Definition

                                                                                            Bắt buộc với rule permit (vn-consent-permit-purpose-required): sự đồng ý phải nêu mục đích xử lý và được thể hiện theo TỪNG mục đích — Luật 91/2025/QH15 Điều 9 khoản 2 điểm a và khoản 4 điểm a. Rule deny không bắt buộc purpose vì từ chối toàn phần là hợp lệ.

                                                                                            ShortMục đích xử lý của rule này
                                                                                            Comments

                                                                                            When the purpose of use tag is on the data, access request purpose of use shall not conflict.

                                                                                            Control0..*
                                                                                            BindingUnless not suitable, these codes SHALL be taken from Mục đích xử lý dữ liệu y tế — VN Consent Purpose ValueSet
                                                                                            (extensible to http://fhir.hl7.org.vn/core/ValueSet/vn-consent-purpose-vs)
                                                                                            TypeCoding
                                                                                            Is Modifierfalse
                                                                                            Summarytrue
                                                                                            Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                            162. Consent.provision.provision.class
                                                                                            Definition

                                                                                            The class of information covered by this rule. The type can be a FHIR resource type, a profile on a type, or a CDA document, or some other type that indicates what sort of information the consent relates to.

                                                                                            Shorte.g. Resource Type, Profile, CDA, etc.
                                                                                            Comments

                                                                                            Multiple types are or'ed together. The intention of the contentType element is that the codes refer to profiles or document types defined in a standard or an implementation guide somewhere.

                                                                                            Control0..*
                                                                                            BindingUnless not suitable, these codes SHALL be taken from ConsentContentClass
                                                                                            (extensible to http://hl7.org/fhir/ValueSet/consent-content-class|4.0.1)

                                                                                            The class (type) of information a consent rule covers.

                                                                                            TypeCoding
                                                                                            Is Modifierfalse
                                                                                            Summarytrue
                                                                                            Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                            164. Consent.provision.provision.code
                                                                                            Definition

                                                                                            If this code is found in an instance, then the rule applies.

                                                                                            Shorte.g. LOINC or SNOMED CT code, etc. in the content
                                                                                            Comments

                                                                                            Typical use of this is a Document code with class = CDA.

                                                                                            Control0..*
                                                                                            BindingFor example codes, see ConsentContentCodes
                                                                                            (example to http://hl7.org/fhir/ValueSet/consent-content-code|4.0.1)

                                                                                            If this code is found in an instance, then the exception applies.

                                                                                            TypeCodeableConcept
                                                                                            Is Modifierfalse
                                                                                            Summarytrue
                                                                                            Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                            166. Consent.provision.provision.dataPeriod
                                                                                            Definition

                                                                                            Clinical or Operational Relevant period of time that bounds the data controlled by this rule.

                                                                                            ShortTimeframe for data controlled by this rule
                                                                                            Comments

                                                                                            This has a different sense to the Consent.period - that is when the consent agreement holds. This is the time period of the data that is controlled by the agreement.

                                                                                            Control0..1
                                                                                            TypePeriod
                                                                                            Is Modifierfalse
                                                                                            Summarytrue
                                                                                            Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                            168. Consent.provision.provision.data
                                                                                            Definition

                                                                                            The resources controlled by this rule if specific resources are referenced.

                                                                                            ShortData controlled by this rule
                                                                                            Control0..*
                                                                                            TypeBackboneElement
                                                                                            Is Modifierfalse
                                                                                            Summarytrue
                                                                                            Meaning if Missingall data
                                                                                            Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                            170. Consent.provision.provision.data.id
                                                                                            Definition

                                                                                            Unique id for the element within a resource (for internal references). This may be any string value that does not contain spaces.

                                                                                            ShortUnique id for inter-element referencing
                                                                                            Control0..1
                                                                                            Typestring
                                                                                            Is Modifierfalse
                                                                                            XML FormatIn the XML format, this property is represented as an attribute.
                                                                                            Summaryfalse
                                                                                            172. Consent.provision.provision.data.extension
                                                                                            Definition

                                                                                            May be used to represent additional information that is not part of the basic definition of the element. To make the use of extensions safe and manageable, there is a strict set of governance applied to the definition and use of extensions. Though any implementer can define an extension, there is a set of requirements that SHALL be met as part of the definition of the extension.

                                                                                            ShortAdditional content defined by implementations
                                                                                            Comments

                                                                                            There can be no stigma associated with the use of extensions by any application, project, or standard - regardless of the institution or jurisdiction that uses or defines the extensions. The use of extensions is what allows the FHIR specification to retain a core level of simplicity for everyone.

                                                                                            Control0..*
                                                                                            TypeExtension
                                                                                            Is Modifierfalse
                                                                                            Summaryfalse
                                                                                            Alternate Namesextensions, user content
                                                                                            Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                            ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
                                                                                            174. Consent.provision.provision.data.modifierExtension
                                                                                            Definition

                                                                                            May be used to represent additional information that is not part of the basic definition of the element and that modifies the understanding of the element in which it is contained and/or the understanding of the containing element's descendants. Usually modifier elements provide negation or qualification. To make the use of extensions safe and manageable, there is a strict set of governance applied to the definition and use of extensions. Though any implementer can define an extension, there is a set of requirements that SHALL be met as part of the definition of the extension. Applications processing a resource are required to check for modifier extensions.

                                                                                            Modifier extensions SHALL NOT change the meaning of any elements on Resource or DomainResource (including cannot change the meaning of modifierExtension itself).

                                                                                            ShortExtensions that cannot be ignored even if unrecognized
                                                                                            Comments

                                                                                            There can be no stigma associated with the use of extensions by any application, project, or standard - regardless of the institution or jurisdiction that uses or defines the extensions. The use of extensions is what allows the FHIR specification to retain a core level of simplicity for everyone.

                                                                                            Control0..*
                                                                                            TypeExtension
                                                                                            Is Modifiertrue because Modifier extensions are expected to modify the meaning or interpretation of the element that contains them
                                                                                            Summarytrue
                                                                                            Requirements

                                                                                            Modifier extensions allow for extensions that cannot be safely ignored to be clearly distinguished from the vast majority of extensions which can be safely ignored. This promotes interoperability by eliminating the need for implementers to prohibit the presence of extensions. For further information, see the definition of modifier extensions.

                                                                                            Alternate Namesextensions, user content, modifiers
                                                                                            Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                            ext-1: Must have either extensions or value[x], not both (extension.exists() != value.exists())
                                                                                            176. Consent.provision.provision.data.meaning
                                                                                            Definition

                                                                                            How the resource reference is interpreted when testing consent restrictions.

                                                                                            Shortinstance | related | dependents | authoredby
                                                                                            Control1..1
                                                                                            BindingThe codes SHALL be taken from ConsentDataMeaning
                                                                                            (required to http://hl7.org/fhir/ValueSet/consent-data-meaning|4.0.1)

                                                                                            How a resource reference is interpreted when testing consent restrictions.

                                                                                            Typecode
                                                                                            Is Modifierfalse
                                                                                            Primitive ValueThis primitive element may be present, or absent, or replaced by an extension
                                                                                            Summarytrue
                                                                                            Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                            178. Consent.provision.provision.data.reference
                                                                                            Definition

                                                                                            A reference to a specific resource that defines which resources are covered by this consent.

                                                                                            ShortThe actual data reference
                                                                                            Control1..1
                                                                                            TypeReference(Resource)
                                                                                            Is Modifierfalse
                                                                                            Summarytrue
                                                                                            Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))
                                                                                            180. Consent.provision.provision.provision
                                                                                            Definition

                                                                                            Rules which provide exceptions to the base rule or subrules.

                                                                                            ShortNested Exception Rules
                                                                                            Control0..*
                                                                                            TypeSeettp://hl7.org/fhir/StructureDefinition/Consent#Consent.provision
                                                                                            Is Modifierfalse
                                                                                            Summaryfalse
                                                                                            Invariantsele-1: All FHIR elements must have a @value or children (hasValue() or (children().count() > id.count()))